In the Linux kernel, the following vulnerability has been resolved:
hwmon: (coretemp) Fix out-of-bounds memory access
Fix a bug that pdata->cpu_map[] is set before out-of-bounds check. The problem might be triggered on systems with more than 128 cores per package.
{ "vanir_signatures": [ { "signature_version": "v1", "signature_type": "Line", "target": { "file": "drivers/hwmon/coretemp.c" }, "deprecated": false, "digest": { "line_hashes": [ "270793539097100562846042298159956041859", "128791090925807163524054237729437307272", "151037264557812117331634743997893433969", "197893765067886853720978499016437583370", "35230148209811562841777608326935495872", "220746125328736757190194622757765833337", "258343619548240107379047590680012507989", "105856763634246031722410411313208795659", "272913615568923159309953077996319481652", "84769800319276230818038546889239163941", "126373614218328870383066526593398557918", "237814893844312276218144743544123551742", "218771046351574973696345206942832076057" ], "threshold": 0.9 }, "id": "CVE-2024-26664-1a6d3e59", "source": "https://git.kernel.org/pub/scm/linux/kernel/git/stable/linux.git@a16afec8e83c56b14a4a73d2e3fb8eec3a8a057e" }, { "signature_version": "v1", "signature_type": "Function", "target": { "file": "drivers/hwmon/coretemp.c", "function": "create_core_data" }, "deprecated": false, "digest": { "length": 1216.0, "function_hash": "255350204259886626142206193455199840343" }, "id": "CVE-2024-26664-30e41d20", "source": "https://git.kernel.org/pub/scm/linux/kernel/git/stable/linux.git@9bce69419271eb8b2b3ab467387cb59c99d80deb" }, { "signature_version": "v1", "signature_type": "Line", "target": { "file": "drivers/hwmon/coretemp.c" }, "deprecated": false, "digest": { "line_hashes": [ "270793539097100562846042298159956041859", "128791090925807163524054237729437307272", "151037264557812117331634743997893433969", "197893765067886853720978499016437583370", "35230148209811562841777608326935495872", "220746125328736757190194622757765833337", "258343619548240107379047590680012507989", "105856763634246031722410411313208795659", "272913615568923159309953077996319481652", "84769800319276230818038546889239163941", "126373614218328870383066526593398557918", "237814893844312276218144743544123551742", "218771046351574973696345206942832076057" ], "threshold": 0.9 }, "id": "CVE-2024-26664-3b0073b8", "source": "https://git.kernel.org/pub/scm/linux/kernel/git/stable/linux.git@9bce69419271eb8b2b3ab467387cb59c99d80deb" }, { "signature_version": "v1", "signature_type": "Function", "target": { "file": "drivers/hwmon/coretemp.c", "function": "create_core_data" }, "deprecated": false, "digest": { "length": 1134.0, "function_hash": "256440979340829992960681854499722792529" }, "id": "CVE-2024-26664-7667ba8d", "source": "https://git.kernel.org/pub/scm/linux/kernel/git/stable/linux.git@4e440abc894585a34c2904a32cd54af1742311b3" }, { "signature_version": "v1", "signature_type": "Function", "target": { "file": "drivers/hwmon/coretemp.c", "function": "create_core_data" }, "deprecated": false, "digest": { "length": 1216.0, "function_hash": "255350204259886626142206193455199840343" }, "id": "CVE-2024-26664-7a0aadb7", "source": "https://git.kernel.org/pub/scm/linux/kernel/git/stable/linux.git@93f0f4e846fcb682c3ec436e3b2e30e5a3a8ee6a" }, { "signature_version": "v1", "signature_type": "Line", "target": { "file": "drivers/hwmon/coretemp.c" }, "deprecated": false, "digest": { "line_hashes": [ "270793539097100562846042298159956041859", "128791090925807163524054237729437307272", "151037264557812117331634743997893433969", "197893765067886853720978499016437583370", "35230148209811562841777608326935495872", "220746125328736757190194622757765833337", "258343619548240107379047590680012507989", "105856763634246031722410411313208795659", "272913615568923159309953077996319481652", "84769800319276230818038546889239163941", "126373614218328870383066526593398557918", "237814893844312276218144743544123551742", "218771046351574973696345206942832076057" ], "threshold": 0.9 }, "id": "CVE-2024-26664-86ff94b7", "source": "https://git.kernel.org/pub/scm/linux/kernel/git/stable/linux.git@3a7753bda55985dc26fae17795cb10d825453ad1" }, { "signature_version": "v1", "signature_type": "Function", "target": { "file": "drivers/hwmon/coretemp.c", "function": "create_core_data" }, "deprecated": false, "digest": { "length": 1134.0, "function_hash": "256440979340829992960681854499722792529" }, "id": "CVE-2024-26664-88846393", "source": "https://git.kernel.org/pub/scm/linux/kernel/git/stable/linux.git@3a7753bda55985dc26fae17795cb10d825453ad1" }, { "signature_version": "v1", "signature_type": "Line", "target": { "file": "drivers/hwmon/coretemp.c" }, "deprecated": false, "digest": { "line_hashes": [ "270793539097100562846042298159956041859", "128791090925807163524054237729437307272", "151037264557812117331634743997893433969", "197893765067886853720978499016437583370", "35230148209811562841777608326935495872", "220746125328736757190194622757765833337", "258343619548240107379047590680012507989", "105856763634246031722410411313208795659", "272913615568923159309953077996319481652", "84769800319276230818038546889239163941", "126373614218328870383066526593398557918", "237814893844312276218144743544123551742", "218771046351574973696345206942832076057" ], "threshold": 0.9 }, "id": "CVE-2024-26664-901428d9", "source": "https://git.kernel.org/pub/scm/linux/kernel/git/stable/linux.git@1eb74c00c9c3b13cb65e508c5d5a2f11afb96b8b" }, { "signature_version": "v1", "signature_type": "Line", "target": { "file": "drivers/hwmon/coretemp.c" }, "deprecated": false, "digest": { "line_hashes": [ "270793539097100562846042298159956041859", "128791090925807163524054237729437307272", "151037264557812117331634743997893433969", "197893765067886853720978499016437583370", "35230148209811562841777608326935495872", "220746125328736757190194622757765833337", "258343619548240107379047590680012507989", "105856763634246031722410411313208795659", "272913615568923159309953077996319481652", "84769800319276230818038546889239163941", "126373614218328870383066526593398557918", "237814893844312276218144743544123551742", "218771046351574973696345206942832076057" ], "threshold": 0.9 }, "id": "CVE-2024-26664-956bb59b", "source": "https://git.kernel.org/pub/scm/linux/kernel/git/stable/linux.git@4e440abc894585a34c2904a32cd54af1742311b3" }, { "signature_version": "v1", "signature_type": "Line", "target": { "file": "drivers/hwmon/coretemp.c" }, "deprecated": false, "digest": { "line_hashes": [ "270793539097100562846042298159956041859", "128791090925807163524054237729437307272", "151037264557812117331634743997893433969", "197893765067886853720978499016437583370", "35230148209811562841777608326935495872", "220746125328736757190194622757765833337", "258343619548240107379047590680012507989", "105856763634246031722410411313208795659", "272913615568923159309953077996319481652", "84769800319276230818038546889239163941", "126373614218328870383066526593398557918", "237814893844312276218144743544123551742", "218771046351574973696345206942832076057" ], "threshold": 0.9 }, "id": "CVE-2024-26664-a6049e6f", "source": "https://git.kernel.org/pub/scm/linux/kernel/git/stable/linux.git@93f0f4e846fcb682c3ec436e3b2e30e5a3a8ee6a" }, { "signature_version": "v1", "signature_type": "Function", "target": { "file": "drivers/hwmon/coretemp.c", "function": "create_core_data" }, "deprecated": false, "digest": { "length": 1216.0, "function_hash": "255350204259886626142206193455199840343" }, "id": "CVE-2024-26664-b82c3ace", "source": "https://git.kernel.org/pub/scm/linux/kernel/git/stable/linux.git@a16afec8e83c56b14a4a73d2e3fb8eec3a8a057e" }, { "signature_version": "v1", "signature_type": "Function", "target": { "file": "drivers/hwmon/coretemp.c", "function": "create_core_data" }, "deprecated": false, "digest": { "length": 1216.0, "function_hash": "255350204259886626142206193455199840343" }, "id": "CVE-2024-26664-e4027f94", "source": "https://git.kernel.org/pub/scm/linux/kernel/git/stable/linux.git@f0da068c75c20ffc5ba28243ff577531dc2af1fd" }, { "signature_version": "v1", "signature_type": "Function", "target": { "file": "drivers/hwmon/coretemp.c", "function": "create_core_data" }, "deprecated": false, "digest": { "length": 1216.0, "function_hash": "255350204259886626142206193455199840343" }, "id": "CVE-2024-26664-e57a03b5", "source": "https://git.kernel.org/pub/scm/linux/kernel/git/stable/linux.git@1eb74c00c9c3b13cb65e508c5d5a2f11afb96b8b" }, { "signature_version": "v1", "signature_type": "Line", "target": { "file": "drivers/hwmon/coretemp.c" }, "deprecated": false, "digest": { "line_hashes": [ "270793539097100562846042298159956041859", "128791090925807163524054237729437307272", "151037264557812117331634743997893433969", "197893765067886853720978499016437583370", "35230148209811562841777608326935495872", "220746125328736757190194622757765833337", "258343619548240107379047590680012507989", "105856763634246031722410411313208795659", "272913615568923159309953077996319481652", "84769800319276230818038546889239163941", "126373614218328870383066526593398557918", "237814893844312276218144743544123551742", "218771046351574973696345206942832076057" ], "threshold": 0.9 }, "id": "CVE-2024-26664-f7dd3daa", "source": "https://git.kernel.org/pub/scm/linux/kernel/git/stable/linux.git@f0da068c75c20ffc5ba28243ff577531dc2af1fd" } ] }