Linux Kernel Security Update Advisory (CVE-2024-53104)

Overview

We have released a security update to address a vulnerability in the Linux Kernel. Users of affected products are advised to update to the latest version.
 

 

Affected Products

 

CVE-2024-53104

Linux Kernel Version: ~4.19.324 (excluded)
Linux Kernel Version: ~5.4.286 (excluded)
Linux Kernel Version: ~5.10.230 (excluded)
Linux Kernel version: ~5.15.172 (excluded)
Linux Kernel version: ~6.1.117 (excluded)
Linux Kernel version: ~6.6.61 (excluded)
Linux Kernel version: ~6.11.8 (excluded)
Linux Kernel version: ~6.12.1 (excluded)
Linux Kernel Version: ~6.13-rc1 (excluded)

 

 

Resolved Vulnerabilities

Out-of-bounds write vulnerability in the Linux Kernel (CVE-2024-53104)

 

Vulnerability Patches

Vulnerability Patches have been made available in the latest updates. Please follow the instructions on the Referenced Sites to update to the latest Vulnerability Patches version.
 

 

CVE-2024-53104

Linux Kernel Version: 4.19.324
Linux Kernel Version: 5.4.286
Linux Kernel Version: 5.10.230
Linux Kernel Version: 5.15.172
Linux Kernel version: 6.1.117
Linux Kernel version: 6.6.61
Linux Kernel Version: 6.11.8
Linux Kernel Version: 6.12.1
Linux Kernel Version: 6.13-rc1

 

If you are running an operating system for which security updates have been released, refer to the Referenced Sites to perform security actions or updates.

 

– Debian [2]
– Ubuntu [3]
– Red Hat/CentOS [4]
– SUSE/openSUSE [5]
– Android [6][7]

 

 

 

References

[1] CVE-2024-53104: media: uvcvideo: Skip parsing frames of type UVC_VS_UNDEFINED in uvc_parse_format
https://lore.kernel.org/linux-cve-announce/2024120232-CVE-2024-53104-d781@gregkh/T/
[2] CVE-2024-53104
https://security-tracker.debian.org/tracker/CVE-2024-53104
[3] CVE-2024-53104
https://ubuntu.com/security/CVE-2024-53104
[4] CVE-2024-53104
https://access.redhat.com/security/cve/cve-2024-53104
[5] CVE-2024-53104
https://www.suse.com/security/cve/CVE-2024-53104.html
[6] Android Security Bulletin February 2025
https://source.android.com/docs/security/bulletin/2025-02-01?hl=ko#spl-details
[7] android / kernel / common / 96ad4e759ff4aaa24eb185500c0c28466ae5452a
https://android.googlesource.com/kernel/common/+/96ad4e759ff4aaa24eb185500c0c28466ae5452a