CVE-2024-26968

Source
https://nvd.nist.gov/vuln/detail/CVE-2024-26968
Import Source
https://storage.googleapis.com/cve-osv-conversion/osv-output/CVE-2024-26968.json
JSON Data
https://api.osv.dev/v1/vulns/CVE-2024-26968
Downstream
Published
2024-05-01T05:19:45Z
Modified
2025-10-15T10:13:02.487535Z
Summary
clk: qcom: gcc-ipq9574: fix terminating of frequency table arrays
Details

In the Linux kernel, the following vulnerability has been resolved:

clk: qcom: gcc-ipq9574: fix terminating of frequency table arrays

The frequency table arrays are supposed to be terminated with an empty element. Add such entry to the end of the arrays where it is missing in order to avoid possible out-of-bound access when the table is traversed by functions like qcomfindfreq() or qcomfindfreq_floor().

Only compile tested.

References

Affected packages

Git / git.kernel.org/pub/scm/linux/kernel/git/stable/linux.git

Affected ranges

Type
GIT
Repo
https://git.kernel.org/pub/scm/linux/kernel/git/stable/linux.git
Events
Introduced
d75b82cff48883b5e75abfd3930afa7a148ab440
Fixed
0204247cf3669b6021fb745c3b7f37ae392ab19c
Type
GIT
Repo
https://git.kernel.org/pub/scm/linux/kernel/git/stable/linux.git
Events
Introduced
d75b82cff48883b5e75abfd3930afa7a148ab440
Fixed
1723629fea8a4e75333196866e10d395463dca72
Type
GIT
Repo
https://git.kernel.org/pub/scm/linux/kernel/git/stable/linux.git
Events
Introduced
d75b82cff48883b5e75abfd3930afa7a148ab440
Fixed
604f2d7c46727c5e24fc7faddc980bc1cc0b1011
Type
GIT
Repo
https://git.kernel.org/pub/scm/linux/kernel/git/stable/linux.git
Events
Introduced
d75b82cff48883b5e75abfd3930afa7a148ab440
Fixed
bd2b6395671d823caa38d8e4d752de2448ae61e1

Affected versions

v6.*

v6.3
v6.3-rc2
v6.3-rc3
v6.3-rc4
v6.3-rc5
v6.3-rc6
v6.3-rc7
v6.4
v6.4-rc1
v6.4-rc2
v6.4-rc3
v6.4-rc4
v6.4-rc5
v6.4-rc6
v6.4-rc7
v6.5
v6.5-rc1
v6.5-rc2
v6.5-rc3
v6.5-rc4
v6.5-rc5
v6.5-rc6
v6.5-rc7
v6.6
v6.6-rc1
v6.6-rc2
v6.6-rc3
v6.6-rc4
v6.6-rc5
v6.6-rc6
v6.6-rc7
v6.6.1
v6.6.10
v6.6.11
v6.6.12
v6.6.13
v6.6.14
v6.6.15
v6.6.16
v6.6.17
v6.6.18
v6.6.19
v6.6.2
v6.6.20
v6.6.21
v6.6.22
v6.6.23
v6.6.3
v6.6.4
v6.6.5
v6.6.6
v6.6.7
v6.6.8
v6.6.9
v6.7
v6.7-rc1
v6.7-rc2
v6.7-rc3
v6.7-rc4
v6.7-rc5
v6.7-rc6
v6.7-rc7
v6.7-rc8
v6.7.1
v6.7.10
v6.7.11
v6.7.2
v6.7.3
v6.7.4
v6.7.5
v6.7.6
v6.7.7
v6.7.8
v6.7.9
v6.8
v6.8-rc1
v6.8-rc2
v6.8-rc3
v6.8-rc4
v6.8-rc5
v6.8-rc6
v6.8-rc7
v6.8.1
v6.8.2

Database specific

{
    "vanir_signatures": [
        {
            "signature_version": "v1",
            "source": "https://git.kernel.org/pub/scm/linux/kernel/git/stable/linux.git@bd2b6395671d823caa38d8e4d752de2448ae61e1",
            "signature_type": "Line",
            "target": {
                "file": "drivers/clk/qcom/gcc-ipq9574.c"
            },
            "deprecated": false,
            "digest": {
                "line_hashes": [
                    "88517621432548347745372379751418678272",
                    "47233394639593458506176622120917935410",
                    "106748664173719845718425998956046217948",
                    "26916954957386509188658496060540969227"
                ],
                "threshold": 0.9
            },
            "id": "CVE-2024-26968-1400087c"
        },
        {
            "signature_version": "v1",
            "source": "https://git.kernel.org/pub/scm/linux/kernel/git/stable/linux.git@0204247cf3669b6021fb745c3b7f37ae392ab19c",
            "signature_type": "Line",
            "target": {
                "file": "drivers/clk/qcom/gcc-ipq9574.c"
            },
            "deprecated": false,
            "digest": {
                "line_hashes": [
                    "88517621432548347745372379751418678272",
                    "47233394639593458506176622120917935410",
                    "106748664173719845718425998956046217948",
                    "26916954957386509188658496060540969227"
                ],
                "threshold": 0.9
            },
            "id": "CVE-2024-26968-73c00a86"
        },
        {
            "signature_version": "v1",
            "source": "https://git.kernel.org/pub/scm/linux/kernel/git/stable/linux.git@604f2d7c46727c5e24fc7faddc980bc1cc0b1011",
            "signature_type": "Line",
            "target": {
                "file": "drivers/clk/qcom/gcc-ipq9574.c"
            },
            "deprecated": false,
            "digest": {
                "line_hashes": [
                    "88517621432548347745372379751418678272",
                    "47233394639593458506176622120917935410",
                    "106748664173719845718425998956046217948",
                    "26916954957386509188658496060540969227"
                ],
                "threshold": 0.9
            },
            "id": "CVE-2024-26968-7e3c0a17"
        },
        {
            "signature_version": "v1",
            "source": "https://git.kernel.org/pub/scm/linux/kernel/git/stable/linux.git@1723629fea8a4e75333196866e10d395463dca72",
            "signature_type": "Line",
            "target": {
                "file": "drivers/clk/qcom/gcc-ipq9574.c"
            },
            "deprecated": false,
            "digest": {
                "line_hashes": [
                    "88517621432548347745372379751418678272",
                    "47233394639593458506176622120917935410",
                    "106748664173719845718425998956046217948",
                    "26916954957386509188658496060540969227"
                ],
                "threshold": 0.9
            },
            "id": "CVE-2024-26968-8afde2aa"
        }
    ]
}

Linux / Kernel

Package

Name
Kernel

Affected ranges

Type
ECOSYSTEM
Events
Introduced
6.4.0
Fixed
6.6.24
Type
ECOSYSTEM
Events
Introduced
6.7.0
Fixed
6.7.12
Type
ECOSYSTEM
Events
Introduced
6.8.0
Fixed
6.8.3