๐Ÿ” CVE Alert

CVE-2024-57910

HIGH 7.1

iio: light: vcnl4035: fix information leak in triggered buffer

CVSS Score
7.1
EPSS Score
0.0%
EPSS Percentile
0th

In the Linux kernel, the following vulnerability has been resolved: iio: light: vcnl4035: fix information leak in triggered buffer The 'buffer' local array is used to push data to userspace from a triggered buffer, but it does not set an initial value for the single data element, which is an u16 aligned to 8 bytes. That leaves at least 4 bytes uninitialized even after writing an integer value with regmap_read(). Initialize the array to zero before using it to avoid pushing uninitialized information to userspace.

Vendor linux
Product linux
Ecosystems
Industries
Technology
Published Jan 19, 2025
Last Updated May 11, 2026
Stay Ahead of the Next One

Get instant alerts for linux linux

Be the first to know when new high vulnerabilities affecting linux linux are published โ€” delivered to Slack, Telegram or Discord.

Get Free Alerts โ†’ Free ยท No credit card ยท 60 sec setup

Affected Versions

Linux / Linux
da8ef748fec2d55db0ae424ab40eee0c737564aa < 13e56229fc81051a42731046e200493c4a7c28ff 49739675048d372946c1ef136c466d5675eba9f0 < b0e9c11c762e4286732d80e66c08c2cb3157b06b ec90b52c07c0403a6db60d752484ec08d605ead0 < cb488706cdec0d6d13f2895bcdf0c32b283a7cc7 ec90b52c07c0403a6db60d752484ec08d605ead0 < 47d245be86492974db3aeb048609542167f56518 ec90b52c07c0403a6db60d752484ec08d605ead0 < a15ea87d4337479c9446b5d71616f4668337afed ec90b52c07c0403a6db60d752484ec08d605ead0 < f6fb1c59776b4263634c472a5be8204c906ffc2c ec90b52c07c0403a6db60d752484ec08d605ead0 < 47b43e53c0a0edf5578d5d12f5fc71c019649279 d69f0d132563a63688efb0afb4dfeaa74a217306 4637815d7922c4bce3bacb13dd1fb5e9a7d167d8
Linux / Linux
5.14

References

NVD โ†— CVE.org โ†— EPSS Data โ†—
git.kernel.org: https://git.kernel.org/stable/c/13e56229fc81051a42731046e200493c4a7c28ff git.kernel.org: https://git.kernel.org/stable/c/b0e9c11c762e4286732d80e66c08c2cb3157b06b git.kernel.org: https://git.kernel.org/stable/c/cb488706cdec0d6d13f2895bcdf0c32b283a7cc7 git.kernel.org: https://git.kernel.org/stable/c/47d245be86492974db3aeb048609542167f56518 git.kernel.org: https://git.kernel.org/stable/c/a15ea87d4337479c9446b5d71616f4668337afed git.kernel.org: https://git.kernel.org/stable/c/f6fb1c59776b4263634c472a5be8204c906ffc2c git.kernel.org: https://git.kernel.org/stable/c/47b43e53c0a0edf5578d5d12f5fc71c019649279 lists.debian.org: https://lists.debian.org/debian-lts-announce/2025/03/msg00001.html lists.debian.org: https://lists.debian.org/debian-lts-announce/2025/03/msg00002.html