Executive Summary

Informations
Name CVE-2024-57910 First vendor Publication 2025-01-19
Vendor Cve Last vendor Modification 2025-02-03

Security-Database Scoring CVSS v3

Cvss vector : CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:N/A:H
Overall CVSS Score 7.1
Base Score 7.1 Environmental Score 7.1
impact SubScore 5.2 Temporal Score 7.1
Exploitabality Sub Score 1.8
 
Attack Vector Local Attack Complexity Low
Privileges Required Low User Interaction None
Scope Unchanged Confidentiality Impact High
Integrity Impact None Availability Impact High
Calculate full CVSS 3.0 Vectors scores

Security-Database Scoring CVSS v2

Cvss vector :
Cvss Base Score N/A Attack Range N/A
Cvss Impact Score N/A Attack Complexity N/A
Cvss Expoit Score N/A Authentication N/A
Calculate full CVSS 2.0 Vectors scores

Detail

In the Linux kernel, the following vulnerability has been resolved:

iio: light: vcnl4035: fix information leak in triggered buffer

The 'buffer' local array is used to push data to userspace from a triggered buffer, but it does not set an initial value for the single data element, which is an u16 aligned to 8 bytes. That leaves at least 4 bytes uninitialized even after writing an integer value with regmap_read().

Initialize the array to zero before using it to avoid pushing uninitialized information to userspace.

Original Source

Url : http://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2024-57910

CPE : Common Platform Enumeration

TypeDescriptionCount
Application 8
Os 3708

Sources (Detail)

https://git.kernel.org/stable/c/13e56229fc81051a42731046e200493c4a7c28ff
https://git.kernel.org/stable/c/47b43e53c0a0edf5578d5d12f5fc71c019649279
https://git.kernel.org/stable/c/47d245be86492974db3aeb048609542167f56518
https://git.kernel.org/stable/c/a15ea87d4337479c9446b5d71616f4668337afed
https://git.kernel.org/stable/c/b0e9c11c762e4286732d80e66c08c2cb3157b06b
https://git.kernel.org/stable/c/cb488706cdec0d6d13f2895bcdf0c32b283a7cc7
https://git.kernel.org/stable/c/f6fb1c59776b4263634c472a5be8204c906ffc2c
Source Url

Alert History

If you want to see full details history, please login or register.
0
1
2
3
4
5
6
7
8
9
10
11
12
13
14
15
16
Date Informations
2025-06-26 02:38:54
  • Multiple Updates
2025-06-25 12:36:55
  • Multiple Updates
2025-06-24 02:43:29
  • Multiple Updates
2025-05-27 02:48:57
  • Multiple Updates
2025-03-29 03:44:49
  • Multiple Updates
2025-03-28 13:48:03
  • Multiple Updates
2025-03-28 03:22:38
  • Multiple Updates
2025-03-25 03:28:35
  • Multiple Updates
2025-03-19 03:17:25
  • Multiple Updates
2025-03-18 03:30:24
  • Multiple Updates
2025-03-14 03:17:30
  • Multiple Updates
2025-03-06 14:14:04
  • Multiple Updates
2025-02-22 03:27:34
  • Multiple Updates
2025-02-03 17:20:39
  • Multiple Updates
2025-02-02 17:20:37
  • Multiple Updates
2025-01-23 21:20:32
  • Multiple Updates
2025-01-19 17:20:28
  • First insertion