CVE-2024-41026: Linux Kernel
Medium severity, CVSS 5.5. EPSS: 0.3% chance of exploitation in the next 30 days.
In the Linux kernel, the following vulnerability has been resolved: mmc: davinci_mmc: Prevent transmitted data size from exceeding sgm's length No check is done on the size of the data to be transmiited. This causes a kernel panic when this size exceeds the sg_miter's length. Limit the number of transmitted bytes to sgm->length.
Affected products
- Linux Linux Kernel: from 6.9, before 6.9.10 (fixed in 6.9.10); version 6.10 only
Published 2024-07-29. Last modified 2026-08-04.