CVE-2024-35830 (GCVE-0-2024-35830)
Vulnerability from cvelistv5
Published
2024-05-17 13:41
Modified
2026-08-05 11:30
Summary
In the Linux kernel, the following vulnerability has been resolved: media: tc358743: register v4l2 async device only after successful setup Ensure the device has been setup correctly before registering the v4l2 async device, thus allowing userspace to access.
Impacted products
Vendor Product Version
Linux Linux Version: 4c5211a100399c3823563193dd881dcb3b7d24fc
Version: 4c5211a100399c3823563193dd881dcb3b7d24fc
Version: 4c5211a100399c3823563193dd881dcb3b7d24fc
Version: 4c5211a100399c3823563193dd881dcb3b7d24fc
Version: 4c5211a100399c3823563193dd881dcb3b7d24fc
Version: 4c5211a100399c3823563193dd881dcb3b7d24fc
Version: 4c5211a100399c3823563193dd881dcb3b7d24fc
Version: 4c5211a100399c3823563193dd881dcb3b7d24fc
Version: 4c5211a100399c3823563193dd881dcb3b7d24fc
Create a notification for this product.
Show details on NVD website


{
  "containers": {
    "adp": [
      {
        "providerMetadata": {
          "dateUpdated": "2024-08-02T03:21:48.478Z",
          "orgId": "af854a3a-2127-422b-91ae-364da2661108",
          "shortName": "CVE"
        },
        "references": [
          {
            "tags": [
              "x_transferred"
            ],
            "url": "https://git.kernel.org/stable/c/17c2650de14842c25c569cbb2126c421489a3a24"
          },
          {
            "tags": [
              "x_transferred"
            ],
            "url": "https://git.kernel.org/stable/c/daf21394f9898fb9f0698c3e50de08132d2164e6"
          },
          {
            "tags": [
              "x_transferred"
            ],
            "url": "https://git.kernel.org/stable/c/610f20e5cf35ca9c0992693cae0dd8643ce932e7"
          },
          {
            "tags": [
              "x_transferred"
            ],
            "url": "https://git.kernel.org/stable/c/b8505a1aee8f1edc9d16d72ae09c93de086e2a1a"
          },
          {
            "tags": [
              "x_transferred"
            ],
            "url": "https://git.kernel.org/stable/c/8ba8db9786b55047df5ad3db3e01dd886687a77d"
          },
          {
            "tags": [
              "x_transferred"
            ],
            "url": "https://git.kernel.org/stable/c/edbb3226c985469a2f8eb69885055c9f5550f468"
          },
          {
            "tags": [
              "x_transferred"
            ],
            "url": "https://git.kernel.org/stable/c/c915c46a25c3efb084c4f5e69a053d7f7a635496"
          },
          {
            "tags": [
              "x_transferred"
            ],
            "url": "https://git.kernel.org/stable/c/4f1490a5d7a0472ee5d9f36547bc4ba46be755c7"
          },
          {
            "tags": [
              "x_transferred"
            ],
            "url": "https://git.kernel.org/stable/c/87399f1ff92203d65f1febf5919429f4bb613a02"
          },
          {
            "tags": [
              "x_transferred"
            ],
            "url": "https://lists.debian.org/debian-lts-announce/2024/06/msg00017.html"
          },
          {
            "tags": [
              "x_transferred"
            ],
            "url": "https://lists.debian.org/debian-lts-announce/2024/06/msg00020.html"
          }
        ],
        "title": "CVE Program Container"
      },
      {
        "metrics": [
          {
            "other": {
              "content": {
                "id": "CVE-2024-35830",
                "options": [
                  {
                    "Exploitation": "none"
                  },
                  {
                    "Automatable": "no"
                  },
                  {
                    "Technical Impact": "partial"
                  }
                ],
                "role": "CISA Coordinator",
                "timestamp": "2024-09-10T15:42:22.059592Z",
                "version": "2.0.3"
              },
              "type": "ssvc"
            }
          }
        ],
        "providerMetadata": {
          "dateUpdated": "2024-09-11T17:33:20.797Z",
          "orgId": "134c704f-9b21-4f2e-91b3-4a467353bcc0",
          "shortName": "CISA-ADP"
        },
        "title": "CISA ADP Vulnrichment"
      }
    ],
    "cna": {
      "affected": [
        {
          "defaultStatus": "unaffected",
          "product": "Linux",
          "programFiles": [
            "drivers/media/i2c/tc358743.c"
          ],
          "repo": "https://git.kernel.org/pub/scm/linux/kernel/git/stable/linux.git",
          "vendor": "Linux",
          "versions": [
            {
              "lessThan": "17c2650de14842c25c569cbb2126c421489a3a24",
              "status": "affected",
              "version": "4c5211a100399c3823563193dd881dcb3b7d24fc",
              "versionType": "git"
            },
            {
              "lessThan": "daf21394f9898fb9f0698c3e50de08132d2164e6",
              "status": "affected",
              "version": "4c5211a100399c3823563193dd881dcb3b7d24fc",
              "versionType": "git"
            },
            {
              "lessThan": "610f20e5cf35ca9c0992693cae0dd8643ce932e7",
              "status": "affected",
              "version": "4c5211a100399c3823563193dd881dcb3b7d24fc",
              "versionType": "git"
            },
            {
              "lessThan": "b8505a1aee8f1edc9d16d72ae09c93de086e2a1a",
              "status": "affected",
              "version": "4c5211a100399c3823563193dd881dcb3b7d24fc",
              "versionType": "git"
            },
            {
              "lessThan": "8ba8db9786b55047df5ad3db3e01dd886687a77d",
              "status": "affected",
              "version": "4c5211a100399c3823563193dd881dcb3b7d24fc",
              "versionType": "git"
            },
            {
              "lessThan": "edbb3226c985469a2f8eb69885055c9f5550f468",
              "status": "affected",
              "version": "4c5211a100399c3823563193dd881dcb3b7d24fc",
              "versionType": "git"
            },
            {
              "lessThan": "c915c46a25c3efb084c4f5e69a053d7f7a635496",
              "status": "affected",
              "version": "4c5211a100399c3823563193dd881dcb3b7d24fc",
              "versionType": "git"
            },
            {
              "lessThan": "4f1490a5d7a0472ee5d9f36547bc4ba46be755c7",
              "status": "affected",
              "version": "4c5211a100399c3823563193dd881dcb3b7d24fc",
              "versionType": "git"
            },
            {
              "lessThan": "87399f1ff92203d65f1febf5919429f4bb613a02",
              "status": "affected",
              "version": "4c5211a100399c3823563193dd881dcb3b7d24fc",
              "versionType": "git"
            }
          ]
        },
        {
          "defaultStatus": "affected",
          "product": "Linux",
          "programFiles": [
            "drivers/media/i2c/tc358743.c"
          ],
          "repo": "https://git.kernel.org/pub/scm/linux/kernel/git/stable/linux.git",
          "vendor": "Linux",
          "versions": [
            {
              "status": "affected",
              "version": "4.3"
            },
            {
              "lessThan": "4.3",
              "status": "unaffected",
              "version": "0",
              "versionType": "semver"
            },
            {
              "lessThanOrEqual": "4.19.*",
              "status": "unaffected",
              "version": "4.19.311",
              "versionType": "semver"
            },
            {
              "lessThanOrEqual": "5.4.*",
              "status": "unaffected",
              "version": "5.4.273",
              "versionType": "semver"
            },
            {
              "lessThanOrEqual": "5.10.*",
              "status": "unaffected",
              "version": "5.10.214",
              "versionType": "semver"
            },
            {
              "lessThanOrEqual": "5.15.*",
              "status": "unaffected",
              "version": "5.15.153",
              "versionType": "semver"
            },
            {
              "lessThanOrEqual": "6.1.*",
              "status": "unaffected",
              "version": "6.1.83",
              "versionType": "semver"
            },
            {
              "lessThanOrEqual": "6.6.*",
              "status": "unaffected",
              "version": "6.6.23",
              "versionType": "semver"
            },
            {
              "lessThanOrEqual": "6.7.*",
              "status": "unaffected",
              "version": "6.7.11",
              "versionType": "semver"
            },
            {
              "lessThanOrEqual": "6.8.*",
              "status": "unaffected",
              "version": "6.8.2",
              "versionType": "semver"
            },
            {
              "lessThanOrEqual": "*",
              "status": "unaffected",
              "version": "6.9",
              "versionType": "original_commit_for_fix"
            }
          ]
        }
      ],
      "cpeApplicability": [
        {
          "nodes": [
            {
              "cpeMatch": [
                {
                  "criteria": "cpe:2.3:o:linux:linux_kernel:*:*:*:*:*:*:*:*",
                  "versionEndExcluding": "4.19.311",
                  "versionStartIncluding": "4.3",
                  "vulnerable": true
                },
                {
                  "criteria": "cpe:2.3:o:linux:linux_kernel:*:*:*:*:*:*:*:*",
                  "versionEndExcluding": "5.4.273",
                  "versionStartIncluding": "4.3",
                  "vulnerable": true
                },
                {
                  "criteria": "cpe:2.3:o:linux:linux_kernel:*:*:*:*:*:*:*:*",
                  "versionEndExcluding": "5.10.214",
                  "versionStartIncluding": "4.3",
                  "vulnerable": true
                },
                {
                  "criteria": "cpe:2.3:o:linux:linux_kernel:*:*:*:*:*:*:*:*",
                  "versionEndExcluding": "5.15.153",
                  "versionStartIncluding": "4.3",
                  "vulnerable": true
                },
                {
                  "criteria": "cpe:2.3:o:linux:linux_kernel:*:*:*:*:*:*:*:*",
                  "versionEndExcluding": "6.1.83",
                  "versionStartIncluding": "4.3",
                  "vulnerable": true
                },
                {
                  "criteria": "cpe:2.3:o:linux:linux_kernel:*:*:*:*:*:*:*:*",
                  "versionEndExcluding": "6.6.23",
                  "versionStartIncluding": "4.3",
                  "vulnerable": true
                },
                {
                  "criteria": "cpe:2.3:o:linux:linux_kernel:*:*:*:*:*:*:*:*",
                  "versionEndExcluding": "6.7.11",
                  "versionStartIncluding": "4.3",
                  "vulnerable": true
                },
                {
                  "criteria": "cpe:2.3:o:linux:linux_kernel:*:*:*:*:*:*:*:*",
                  "versionEndExcluding": "6.8.2",
                  "versionStartIncluding": "4.3",
                  "vulnerable": true
                },
                {
                  "criteria": "cpe:2.3:o:linux:linux_kernel:*:*:*:*:*:*:*:*",
                  "versionEndExcluding": "6.9",
                  "versionStartIncluding": "4.3",
                  "vulnerable": true
                }
              ],
              "negate": false,
              "operator": "OR"
            }
          ]
        }
      ],
      "descriptions": [
        {
          "lang": "en",
          "value": "In the Linux kernel, the following vulnerability has been resolved:\n\nmedia: tc358743: register v4l2 async device only after successful setup\n\nEnsure the device has been setup correctly before registering the v4l2\nasync device, thus allowing userspace to access."
        }
      ],
      "metrics": [
        {
          "cvssV3_1": {
            "baseScore": 7.8,
            "baseSeverity": "HIGH",
            "vectorString": "CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H",
            "version": "3.1"
          },
          "scenarios": [
            {
              "lang": "en",
              "value": "AV:L - The vulnerable code is reached through `ioctl()` on the `/dev/v4l-subdev*` character device node created by `v4l2_device_register_subdev_nodes()`, so the attacker needs local system access. No network, RF, or physical-bus path reaches these subdev ops.\nAC:L - The attacker controls their side of the race entirely and can spin on `open()`/`ioctl()`; the node becomes visible the moment `v4l2_async_register_subdev()` returns while probe still has tens of milliseconds of I\u00b2C register programming, CEC adapter allocation, and IRQ setup left to run, making the window large and reliably winnable.\nPR:L - Only an open file descriptor on the V4L2 subdev node is needed \u2014 `VIDIOC_SUBDEV_S_FMT`, `S_EDID`, and `S_DV_TIMINGS` have no capability check (only `VIDIOC_DBG_*` gate on `CAP_SYS_ADMIN`), and these nodes are routinely accessible to unprivileged users via the `video` group, logind uaccess ACLs, or the Android camera/media UID.\nUI:N - No victim action is required; the attacker acts alone against a driver probe that occurs as a normal system event at boot or module load.\nS:U - The corrupted objects \u2014 the `tc358743_state` mutex, the delayed work/timer, and the freed subdev \u2014 are all ordinary kernel memory in the same security authority; no hypervisor, IOMMU, or sandbox boundary is crossed.\nC:H - Use of the uninitialized `confctl_mutex` and `delayed_work`/`timer_list`, plus the dangling `v4l2_subdev` left registered on the global `subdev_list` after a devm-freed probe failure, give memory-corruption and use-after-free primitives over kernel slab memory that can be groomed into an arbitrary kernel read.\nI:H - `INIT_DELAYED_WORK()` re-initializing a timer already linked into the timer base\u0027s hlist, `mutex_init()` racing a live waiter, and dereferencing `sd-\u003eops` from freed memory all yield controlled writes and control-flow hijack potential; on affected trees lacking the `WARN_ON_ONCE(!fn)` guard, `expire_timers()` calls a NULL function pointer outright.\nA:H - The immediate and easily reproduced outcome is a kernel oops or panic \u2014 NULL-pointer write via `list_add_tail()` on the zeroed `wait_list`, `WARN_ON(!work-\u003efunc)` in `__flush_work()` (panic under `panic_on_warn`), timer-base list corruption, or a use-after-free crash."
            }
          ]
        }
      ],
      "providerMetadata": {
        "dateUpdated": "2026-08-05T11:30:11.254Z",
        "orgId": "416baaa9-dc9f-4396-8d5f-8c081fb06d67",
        "shortName": "Linux"
      },
      "references": [
        {
          "url": "https://git.kernel.org/stable/c/17c2650de14842c25c569cbb2126c421489a3a24"
        },
        {
          "url": "https://git.kernel.org/stable/c/daf21394f9898fb9f0698c3e50de08132d2164e6"
        },
        {
          "url": "https://git.kernel.org/stable/c/610f20e5cf35ca9c0992693cae0dd8643ce932e7"
        },
        {
          "url": "https://git.kernel.org/stable/c/b8505a1aee8f1edc9d16d72ae09c93de086e2a1a"
        },
        {
          "url": "https://git.kernel.org/stable/c/8ba8db9786b55047df5ad3db3e01dd886687a77d"
        },
        {
          "url": "https://git.kernel.org/stable/c/edbb3226c985469a2f8eb69885055c9f5550f468"
        },
        {
          "url": "https://git.kernel.org/stable/c/c915c46a25c3efb084c4f5e69a053d7f7a635496"
        },
        {
          "url": "https://git.kernel.org/stable/c/4f1490a5d7a0472ee5d9f36547bc4ba46be755c7"
        },
        {
          "url": "https://git.kernel.org/stable/c/87399f1ff92203d65f1febf5919429f4bb613a02"
        }
      ],
      "title": "media: tc358743: register v4l2 async device only after successful setup",
      "x_generator": {
        "engine": "bippy-1.2.0"
      }
    }
  },
  "cveMetadata": {
    "assignerOrgId": "416baaa9-dc9f-4396-8d5f-8c081fb06d67",
    "assignerShortName": "Linux",
    "cveId": "CVE-2024-35830",
    "datePublished": "2024-05-17T13:41:19.675Z",
    "dateReserved": "2024-05-17T12:19:12.348Z",
    "dateUpdated": "2026-08-05T11:30:11.254Z",
    "state": "PUBLISHED"
  },
  "dataType": "CVE_RECORD",
  "dataVersion": "5.2",
  "vulnerability-lookup:meta": {
    "vulnrichment": {
      "containers": "{\"adp\": [{\"title\": \"CVE Program Container\", \"references\": [{\"url\": \"https://git.kernel.org/stable/c/17c2650de14842c25c569cbb2126c421489a3a24\", \"tags\": [\"x_transferred\"]}, {\"url\": \"https://git.kernel.org/stable/c/daf21394f9898fb9f0698c3e50de08132d2164e6\", \"tags\": [\"x_transferred\"]}, {\"url\": \"https://git.kernel.org/stable/c/610f20e5cf35ca9c0992693cae0dd8643ce932e7\", \"tags\": [\"x_transferred\"]}, {\"url\": \"https://git.kernel.org/stable/c/b8505a1aee8f1edc9d16d72ae09c93de086e2a1a\", \"tags\": [\"x_transferred\"]}, {\"url\": \"https://git.kernel.org/stable/c/8ba8db9786b55047df5ad3db3e01dd886687a77d\", \"tags\": [\"x_transferred\"]}, {\"url\": \"https://git.kernel.org/stable/c/edbb3226c985469a2f8eb69885055c9f5550f468\", \"tags\": [\"x_transferred\"]}, {\"url\": \"https://git.kernel.org/stable/c/c915c46a25c3efb084c4f5e69a053d7f7a635496\", \"tags\": [\"x_transferred\"]}, {\"url\": \"https://git.kernel.org/stable/c/4f1490a5d7a0472ee5d9f36547bc4ba46be755c7\", \"tags\": [\"x_transferred\"]}, {\"url\": \"https://git.kernel.org/stable/c/87399f1ff92203d65f1febf5919429f4bb613a02\", \"tags\": [\"x_transferred\"]}, {\"url\": \"https://lists.debian.org/debian-lts-announce/2024/06/msg00017.html\", \"tags\": [\"x_transferred\"]}, {\"url\": \"https://lists.debian.org/debian-lts-announce/2024/06/msg00020.html\", \"tags\": [\"x_transferred\"]}], \"providerMetadata\": {\"orgId\": \"af854a3a-2127-422b-91ae-364da2661108\", \"shortName\": \"CVE\", \"dateUpdated\": \"2024-08-02T03:21:48.478Z\"}}, {\"title\": \"CISA ADP Vulnrichment\", \"metrics\": [{\"other\": {\"type\": \"ssvc\", \"content\": {\"id\": \"CVE-2024-35830\", \"role\": \"CISA Coordinator\", \"options\": [{\"Exploitation\": \"none\"}, {\"Automatable\": \"no\"}, {\"Technical Impact\": \"partial\"}], \"version\": \"2.0.3\", \"timestamp\": \"2024-09-10T15:42:22.059592Z\"}}}], \"providerMetadata\": {\"orgId\": \"134c704f-9b21-4f2e-91b3-4a467353bcc0\", \"shortName\": \"CISA-ADP\", \"dateUpdated\": \"2024-09-11T12:42:16.255Z\"}}], \"cna\": {\"title\": \"media: tc358743: register v4l2 async device only after successful setup\", \"metrics\": [{\"cvssV3_1\": {\"version\": \"3.1\", \"baseScore\": 7.8, \"baseSeverity\": \"HIGH\", \"vectorString\": \"CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H\"}, \"scenarios\": [{\"lang\": \"en\", \"value\": \"AV:L - The vulnerable code is reached through `ioctl()` on the `/dev/v4l-subdev*` character device node created by `v4l2_device_register_subdev_nodes()`, so the attacker needs local system access. No network, RF, or physical-bus path reaches these subdev ops.\\nAC:L - The attacker controls their side of the race entirely and can spin on `open()`/`ioctl()`; the node becomes visible the moment `v4l2_async_register_subdev()` returns while probe still has tens of milliseconds of I\\u00b2C register programming, CEC adapter allocation, and IRQ setup left to run, making the window large and reliably winnable.\\nPR:L - Only an open file descriptor on the V4L2 subdev node is needed \\u2014 `VIDIOC_SUBDEV_S_FMT`, `S_EDID`, and `S_DV_TIMINGS` have no capability check (only `VIDIOC_DBG_*` gate on `CAP_SYS_ADMIN`), and these nodes are routinely accessible to unprivileged users via the `video` group, logind uaccess ACLs, or the Android camera/media UID.\\nUI:N - No victim action is required; the attacker acts alone against a driver probe that occurs as a normal system event at boot or module load.\\nS:U - The corrupted objects \\u2014 the `tc358743_state` mutex, the delayed work/timer, and the freed subdev \\u2014 are all ordinary kernel memory in the same security authority; no hypervisor, IOMMU, or sandbox boundary is crossed.\\nC:H - Use of the uninitialized `confctl_mutex` and `delayed_work`/`timer_list`, plus the dangling `v4l2_subdev` left registered on the global `subdev_list` after a devm-freed probe failure, give memory-corruption and use-after-free primitives over kernel slab memory that can be groomed into an arbitrary kernel read.\\nI:H - `INIT_DELAYED_WORK()` re-initializing a timer already linked into the timer base\u0027s hlist, `mutex_init()` racing a live waiter, and dereferencing `sd-\u003eops` from freed memory all yield controlled writes and control-flow hijack potential; on affected trees lacking the `WARN_ON_ONCE(!fn)` guard, `expire_timers()` calls a NULL function pointer outright.\\nA:H - The immediate and easily reproduced outcome is a kernel oops or panic \\u2014 NULL-pointer write via `list_add_tail()` on the zeroed `wait_list`, `WARN_ON(!work-\u003efunc)` in `__flush_work()` (panic under `panic_on_warn`), timer-base list corruption, or a use-after-free crash.\"}]}], \"affected\": [{\"repo\": \"https://git.kernel.org/pub/scm/linux/kernel/git/stable/linux.git\", \"vendor\": \"Linux\", \"product\": \"Linux\", \"versions\": [{\"status\": \"affected\", \"version\": \"4c5211a100399c3823563193dd881dcb3b7d24fc\", \"lessThan\": \"17c2650de14842c25c569cbb2126c421489a3a24\", \"versionType\": \"git\"}, {\"status\": \"affected\", \"version\": \"4c5211a100399c3823563193dd881dcb3b7d24fc\", \"lessThan\": \"daf21394f9898fb9f0698c3e50de08132d2164e6\", \"versionType\": \"git\"}, {\"status\": \"affected\", \"version\": \"4c5211a100399c3823563193dd881dcb3b7d24fc\", \"lessThan\": \"610f20e5cf35ca9c0992693cae0dd8643ce932e7\", \"versionType\": \"git\"}, {\"status\": \"affected\", \"version\": \"4c5211a100399c3823563193dd881dcb3b7d24fc\", \"lessThan\": \"b8505a1aee8f1edc9d16d72ae09c93de086e2a1a\", \"versionType\": \"git\"}, {\"status\": \"affected\", \"version\": \"4c5211a100399c3823563193dd881dcb3b7d24fc\", \"lessThan\": \"8ba8db9786b55047df5ad3db3e01dd886687a77d\", \"versionType\": \"git\"}, {\"status\": \"affected\", \"version\": \"4c5211a100399c3823563193dd881dcb3b7d24fc\", \"lessThan\": \"edbb3226c985469a2f8eb69885055c9f5550f468\", \"versionType\": \"git\"}, {\"status\": \"affected\", \"version\": \"4c5211a100399c3823563193dd881dcb3b7d24fc\", \"lessThan\": \"c915c46a25c3efb084c4f5e69a053d7f7a635496\", \"versionType\": \"git\"}, {\"status\": \"affected\", \"version\": \"4c5211a100399c3823563193dd881dcb3b7d24fc\", \"lessThan\": \"4f1490a5d7a0472ee5d9f36547bc4ba46be755c7\", \"versionType\": \"git\"}, {\"status\": \"affected\", \"version\": \"4c5211a100399c3823563193dd881dcb3b7d24fc\", \"lessThan\": \"87399f1ff92203d65f1febf5919429f4bb613a02\", \"versionType\": \"git\"}], \"programFiles\": [\"drivers/media/i2c/tc358743.c\"], \"defaultStatus\": \"unaffected\"}, {\"repo\": \"https://git.kernel.org/pub/scm/linux/kernel/git/stable/linux.git\", \"vendor\": \"Linux\", \"product\": \"Linux\", \"versions\": [{\"status\": \"affected\", \"version\": \"4.3\"}, {\"status\": \"unaffected\", \"version\": \"0\", \"lessThan\": \"4.3\", \"versionType\": \"semver\"}, {\"status\": \"unaffected\", \"version\": \"4.19.311\", \"versionType\": \"semver\", \"lessThanOrEqual\": \"4.19.*\"}, {\"status\": \"unaffected\", \"version\": \"5.4.273\", \"versionType\": \"semver\", \"lessThanOrEqual\": \"5.4.*\"}, {\"status\": \"unaffected\", \"version\": \"5.10.214\", \"versionType\": \"semver\", \"lessThanOrEqual\": \"5.10.*\"}, {\"status\": \"unaffected\", \"version\": \"5.15.153\", \"versionType\": \"semver\", \"lessThanOrEqual\": \"5.15.*\"}, {\"status\": \"unaffected\", \"version\": \"6.1.83\", \"versionType\": \"semver\", \"lessThanOrEqual\": \"6.1.*\"}, {\"status\": \"unaffected\", \"version\": \"6.6.23\", \"versionType\": \"semver\", \"lessThanOrEqual\": \"6.6.*\"}, {\"status\": \"unaffected\", \"version\": \"6.7.11\", \"versionType\": \"semver\", \"lessThanOrEqual\": \"6.7.*\"}, {\"status\": \"unaffected\", \"version\": \"6.8.2\", \"versionType\": \"semver\", \"lessThanOrEqual\": \"6.8.*\"}, {\"status\": \"unaffected\", \"version\": \"6.9\", \"versionType\": \"original_commit_for_fix\", \"lessThanOrEqual\": \"*\"}], \"programFiles\": [\"drivers/media/i2c/tc358743.c\"], \"defaultStatus\": \"affected\"}], \"references\": [{\"url\": \"https://git.kernel.org/stable/c/17c2650de14842c25c569cbb2126c421489a3a24\"}, {\"url\": \"https://git.kernel.org/stable/c/daf21394f9898fb9f0698c3e50de08132d2164e6\"}, {\"url\": \"https://git.kernel.org/stable/c/610f20e5cf35ca9c0992693cae0dd8643ce932e7\"}, {\"url\": \"https://git.kernel.org/stable/c/b8505a1aee8f1edc9d16d72ae09c93de086e2a1a\"}, {\"url\": \"https://git.kernel.org/stable/c/8ba8db9786b55047df5ad3db3e01dd886687a77d\"}, {\"url\": \"https://git.kernel.org/stable/c/edbb3226c985469a2f8eb69885055c9f5550f468\"}, {\"url\": \"https://git.kernel.org/stable/c/c915c46a25c3efb084c4f5e69a053d7f7a635496\"}, {\"url\": \"https://git.kernel.org/stable/c/4f1490a5d7a0472ee5d9f36547bc4ba46be755c7\"}, {\"url\": \"https://git.kernel.org/stable/c/87399f1ff92203d65f1febf5919429f4bb613a02\"}], \"x_generator\": {\"engine\": \"bippy-1.2.0\"}, \"descriptions\": [{\"lang\": \"en\", \"value\": \"In the Linux kernel, the following vulnerability has been resolved:\\n\\nmedia: tc358743: register v4l2 async device only after successful setup\\n\\nEnsure the device has been setup correctly before registering the v4l2\\nasync device, thus allowing userspace to access.\"}], \"cpeApplicability\": [{\"nodes\": [{\"negate\": false, \"cpeMatch\": [{\"criteria\": \"cpe:2.3:o:linux:linux_kernel:*:*:*:*:*:*:*:*\", \"vulnerable\": true, \"versionEndExcluding\": \"4.19.311\", \"versionStartIncluding\": \"4.3\"}, {\"criteria\": \"cpe:2.3:o:linux:linux_kernel:*:*:*:*:*:*:*:*\", \"vulnerable\": true, \"versionEndExcluding\": \"5.4.273\", \"versionStartIncluding\": \"4.3\"}, {\"criteria\": \"cpe:2.3:o:linux:linux_kernel:*:*:*:*:*:*:*:*\", \"vulnerable\": true, \"versionEndExcluding\": \"5.10.214\", \"versionStartIncluding\": \"4.3\"}, {\"criteria\": \"cpe:2.3:o:linux:linux_kernel:*:*:*:*:*:*:*:*\", \"vulnerable\": true, \"versionEndExcluding\": \"5.15.153\", \"versionStartIncluding\": \"4.3\"}, {\"criteria\": \"cpe:2.3:o:linux:linux_kernel:*:*:*:*:*:*:*:*\", \"vulnerable\": true, \"versionEndExcluding\": \"6.1.83\", \"versionStartIncluding\": \"4.3\"}, {\"criteria\": \"cpe:2.3:o:linux:linux_kernel:*:*:*:*:*:*:*:*\", \"vulnerable\": true, \"versionEndExcluding\": \"6.6.23\", \"versionStartIncluding\": \"4.3\"}, {\"criteria\": \"cpe:2.3:o:linux:linux_kernel:*:*:*:*:*:*:*:*\", \"vulnerable\": true, \"versionEndExcluding\": \"6.7.11\", \"versionStartIncluding\": \"4.3\"}, {\"criteria\": \"cpe:2.3:o:linux:linux_kernel:*:*:*:*:*:*:*:*\", \"vulnerable\": true, \"versionEndExcluding\": \"6.8.2\", \"versionStartIncluding\": \"4.3\"}, {\"criteria\": \"cpe:2.3:o:linux:linux_kernel:*:*:*:*:*:*:*:*\", \"vulnerable\": true, \"versionEndExcluding\": \"6.9\", \"versionStartIncluding\": \"4.3\"}], \"operator\": \"OR\"}]}], \"providerMetadata\": {\"orgId\": \"416baaa9-dc9f-4396-8d5f-8c081fb06d67\", \"shortName\": \"Linux\", \"dateUpdated\": \"2026-08-05T11:30:11.254Z\"}}}",
      "cveMetadata": "{\"cveId\": \"CVE-2024-35830\", \"state\": \"PUBLISHED\", \"dateUpdated\": \"2026-08-05T11:30:11.254Z\", \"dateReserved\": \"2024-05-17T12:19:12.348Z\", \"assignerOrgId\": \"416baaa9-dc9f-4396-8d5f-8c081fb06d67\", \"datePublished\": \"2024-05-17T13:41:19.675Z\", \"assignerShortName\": \"Linux\"}",
      "dataType": "CVE_RECORD",
      "dataVersion": "5.2"
    }
  }
}


Log in or create an account to share your comment.




Tags
Taxonomy of the tags.


Loading…

Loading…

Loading…

Sightings

Author Source Type Date

Nomenclature

  • Seen: The vulnerability was mentioned, discussed, or seen somewhere by the user.
  • Confirmed: The vulnerability is confirmed from an analyst perspective.
  • Published Proof of Concept: A public proof of concept is available for this vulnerability.
  • Exploited: This vulnerability was exploited and seen by the user reporting the sighting.
  • Patched: This vulnerability was successfully patched by the user reporting the sighting.
  • Not exploited: This vulnerability was not exploited or seen by the user reporting the sighting.
  • Not confirmed: The user expresses doubt about the veracity of the vulnerability.
  • Not patched: This vulnerability was not successfully patched by the user reporting the sighting.


Loading…

Loading…