CyberAlerts is shutting down on June 30th, 2025. Thank you for your support!

CVE-2024-57990: wifi: mt76: mt7925: fix off by one in mt7925_load_clc()

Description

In the Linux kernel, the following vulnerability has been resolved:

wifi: mt76: mt7925: fix off by one in mt7925_load_clc()

This comparison should be >= instead of > to prevent an out of bounds
read and write.

Classification

CVE ID: CVE-2024-57990

Affected Products

Vendor: Linux, Linux

Product: Linux, Linux

Exploit Prediction Scoring System (EPSS)

EPSS Score: 0.02% (probability of being exploited)

EPSS Percentile: 1.7% (scored less or equal to compared to others)

EPSS Date: 2025-03-27 (when was this score calculated)

References

https://nvd.nist.gov/vuln/detail/CVE-2024-57990
https://git.kernel.org/stable/c/d03b8fe1b518fc2ea2d82588e905f56d80cd64b2
https://git.kernel.org/stable/c/2d1628d32300e4f67ac0b7409cbfa7b912a8fe9d
https://git.kernel.org/stable/c/08fa656c91fd5fdf47ba393795b9c0d1e97539ed

Timeline