๐Ÿ” CVE Alert

CVE-2024-50113

MEDIUM 5.5

firewire: core: fix invalid port index for parent device

CVSS Score
5.5
EPSS Score
0.0%
EPSS Percentile
0th

In the Linux kernel, the following vulnerability has been resolved: firewire: core: fix invalid port index for parent device In a commit 24b7f8e5cd65 ("firewire: core: use helper functions for self ID sequence"), the enumeration over self ID sequence was refactored with some helper functions with KUnit tests. These helper functions are guaranteed to work expectedly by the KUnit tests, however their application includes a mistake to assign invalid value to the index of port connected to parent device. This bug affects the case that any extra node devices which has three or more ports are connected to 1394 OHCI controller. In the case, the path to update the tree cache could hits WARN_ON(), and gets general protection fault due to the access to invalid address computed by the invalid value. This commit fixes the bug to assign correct port index.

Vendor linux
Product linux
Ecosystems
Industries
Technology
Published Nov 5, 2024
Last Updated May 11, 2026
Stay Ahead of the Next One

Get instant alerts for linux linux

Be the first to know when new medium vulnerabilities affecting linux linux are published โ€” delivered to Slack, Telegram or Discord.

Get Free Alerts โ†’ Free ยท No credit card ยท 60 sec setup

Affected Versions

Linux / Linux
24b7f8e5cd656196a13077e160aec45ad89b58d9 < 90753a38bc3d058820981f812a908a99f7b337c1 24b7f8e5cd656196a13077e160aec45ad89b58d9 < f6a6780e0b9bbcf311a727afed06fee533a5e957
Linux / Linux
6.11

References

NVD โ†— CVE.org โ†— EPSS Data โ†—
git.kernel.org: https://git.kernel.org/stable/c/90753a38bc3d058820981f812a908a99f7b337c1 git.kernel.org: https://git.kernel.org/stable/c/f6a6780e0b9bbcf311a727afed06fee533a5e957