CVE-2024-38631: Linux Kernel
High severity, CVSS 7.8. EPSS: 0.2% chance of exploitation in the next 30 days.
In the Linux kernel, the following vulnerability has been resolved: iio: adc: PAC1934: fix accessing out of bounds array index Fix accessing out of bounds array index for average current and voltage measurements. The device itself has only 4 channels, but in sysfs there are "fake" channels for the average voltages and currents too.
Affected products
- Linux Linux Kernel: from 6.9, before 6.9.4 (fixed in 6.9.4)
Published 2024-06-21. Last modified 2026-06-17.