CVE-2024-57910
iio: light: vcnl4035: fix information leak in triggered buffer
CVSS Score
7.1
EPSS Score
0.0%
EPSS Percentile
0th
In the Linux kernel, the following vulnerability has been resolved: iio: light: vcnl4035: fix information leak in triggered buffer The 'buffer' local array is used to push data to userspace from a triggered buffer, but it does not set an initial value for the single data element, which is an u16 aligned to 8 bytes. That leaves at least 4 bytes uninitialized even after writing an integer value with regmap_read(). Initialize the array to zero before using it to avoid pushing uninitialized information to userspace.
| Vendor | linux |
| Product | linux |
| Ecosystems | |
| Industries | Technology |
| Published | Jan 19, 2025 |
| Last Updated | May 11, 2026 |
Stay Ahead of the Next One
Get instant alerts for linux linux
Be the first to know when new high vulnerabilities affecting linux linux are published โ delivered to Slack, Telegram or Discord.
Get Free Alerts โ
Free ยท No credit card ยท 60 sec setup
Affected Versions
Linux / Linux
da8ef748fec2d55db0ae424ab40eee0c737564aa < 13e56229fc81051a42731046e200493c4a7c28ff 49739675048d372946c1ef136c466d5675eba9f0 < b0e9c11c762e4286732d80e66c08c2cb3157b06b ec90b52c07c0403a6db60d752484ec08d605ead0 < cb488706cdec0d6d13f2895bcdf0c32b283a7cc7 ec90b52c07c0403a6db60d752484ec08d605ead0 < 47d245be86492974db3aeb048609542167f56518 ec90b52c07c0403a6db60d752484ec08d605ead0 < a15ea87d4337479c9446b5d71616f4668337afed ec90b52c07c0403a6db60d752484ec08d605ead0 < f6fb1c59776b4263634c472a5be8204c906ffc2c ec90b52c07c0403a6db60d752484ec08d605ead0 < 47b43e53c0a0edf5578d5d12f5fc71c019649279 d69f0d132563a63688efb0afb4dfeaa74a217306 4637815d7922c4bce3bacb13dd1fb5e9a7d167d8
Linux / Linux
5.14
References
git.kernel.org: https://git.kernel.org/stable/c/13e56229fc81051a42731046e200493c4a7c28ff git.kernel.org: https://git.kernel.org/stable/c/b0e9c11c762e4286732d80e66c08c2cb3157b06b git.kernel.org: https://git.kernel.org/stable/c/cb488706cdec0d6d13f2895bcdf0c32b283a7cc7 git.kernel.org: https://git.kernel.org/stable/c/47d245be86492974db3aeb048609542167f56518 git.kernel.org: https://git.kernel.org/stable/c/a15ea87d4337479c9446b5d71616f4668337afed git.kernel.org: https://git.kernel.org/stable/c/f6fb1c59776b4263634c472a5be8204c906ffc2c git.kernel.org: https://git.kernel.org/stable/c/47b43e53c0a0edf5578d5d12f5fc71c019649279 lists.debian.org: https://lists.debian.org/debian-lts-announce/2025/03/msg00001.html lists.debian.org: https://lists.debian.org/debian-lts-announce/2025/03/msg00002.html