← Back to browse · API

CVE-2024-53104

Severity
HIGH
CVSS
7.8
EPSS
0.03301
Risk score
57.36
CISA KEV
Yes
PoC
Yes
Published
2025-02-05
Modified
2025-02-05
First seen
2026-08-07
Aliases
EUVD-2024-51776, GHSA-FG92-6XPX-V2X4
Products
Linux:Kernel, Linux:Linux 2.6.26, Linux:Linux c0efd232929c2cd87238de2cccdaf4e845be5b0c <1ee9d9122801eb688783acd07791f2906b87cb4f, Linux:Linux c0efd232929c2cd87238de2cccdaf4e845be5b0c <467d84dc78c9abf6b217ada22b3fdba336262e29, Linux:Linux c0efd232929c2cd87238de2cccdaf4e845be5b0c <575a562f7a3ec2d54ff77ab6810e3fbceef2a91d, Linux:Linux c0efd232929c2cd87238de2cccdaf4e845be5b0c <622ad10aae5f5e03b7927ea95f7f32812f692bb5, Linux:Linux c0efd232929c2cd87238de2cccdaf4e845be5b0c <684022f81f128338fe3587ec967459669a1204ae, Linux:Linux c0efd232929c2cd87238de2cccdaf4e845be5b0c <95edf13a48e75dc2cc5b0bc57bf90d6948a22fe8, Linux:Linux c0efd232929c2cd87238de2cccdaf4e845be5b0c <beced2cb09b58c1243733f374c560a55382003d6, Linux:Linux c0efd232929c2cd87238de2cccdaf4e845be5b0c <ecf2b43018da9579842c774b7f35dbe11b5c38dd, Linux:Linux c0efd232929c2cd87238de2cccdaf4e845be5b0c <faff5bbb2762c44ec7426037b3000e77a11d6773, Linux:Linux patch: 0, Linux:Linux patch: 4.19.324, Linux:Linux patch: 5.10.230, Linux:Linux patch: 5.15.172, Linux:Linux patch: 5.4.286, Linux:Linux patch: 6.1.117, Linux:Linux patch: 6.11.8, Linux:Linux patch: 6.12.1, Linux:Linux patch: 6.13, Linux:Linux patch: 6.6.61
Sources
github 601298a24475d0d682692445|CVE-2024-53104
cisa.gov CVE-2024-53104
euvd EUVD-2024-51776

Description

Linux kernel contains an out-of-bounds write vulnerability in the uvc_parse_streaming component of the USB Video Class (UVC) driver that could allow for physical escalation of privilege.

References