CVE-2024-47671: USB: usbtmc: prevent kernel-usb-infoleak
In the Linux kernel, the following vulnerability has been resolved:
USB: usbtmc: prevent kernel-usb-infoleak
The syzbot reported a kernel-usb-infoleak in usbtmcwrite, we need to clear the structure before filling fields.
Other sources
This CVE was automatically created from a reference found in an email or other text. If you are reading this, then this CVE entry is probably erroneous, since this text should be replaced by the official CVE description automatically.
— Launchpad
Affected Software
Remediation
Event History
Frequently Asked Questions
What is the severity of CVE-2024-47671?
CVE-2024-47671 has been categorized with a severity level that indicates a potential information leak vulnerability in the Linux kernel.
How do I fix CVE-2024-47671?
To fix CVE-2024-47671, update to the latest patched version of the Linux kernel as recommended in security advisories.
Which versions of the Linux kernel are affected by CVE-2024-47671?
CVE-2024-47671 affects multiple versions of the Linux kernel from 4.20 up to various specific versions before 6.11.1.
What is the nature of the vulnerability in CVE-2024-47671?
CVE-2024-47671 involves an information leak issue in the usbtmc_write function of the Linux kernel's USB component.
Can CVE-2024-47671 lead to data exposure?
Yes, CVE-2024-47671 can potentially lead to unintentional information disclosure in the Linux kernel.