CVE-2024-35845

Updated: 2025-05-05 02:59:13.801382

Description:

In the Linux kernel, the following vulnerability has been resolved: wifi: iwlwifi: dbg-tlv: ensure NUL termination The iwl_fw_ini_debug_info_tlv is used as a string, so we must ensure the string is terminated correctly before using it.


Links NIST CIRCL RHEL Ubuntu

Severity

Severity Score
CVSS Version 2.x NONE 0
CVSS Version 3.x MEDIUM 4.4

Status

OS name Project name Version Score Severity Status Errata Last updated

Statement

AlmaLinux 9.2 ESU kernel 5.14.0 4.4 MEDIUM Released CLSA-2025:1743193221 2024-10-21 17:41:58
CentOS 6 ELS kernel 2.6.32 4.4 MEDIUM Ignored 2024-07-02 14:25:01
CentOS 7 ELS kernel 3.10.0 4.4 MEDIUM Ignored 2024-07-02 14:24:59
CentOS 8.4 ELS kernel 4.18.0 4.4 MEDIUM Ignored 2024-07-09 05:15:06
CentOS 8.5 ELS kernel 4.18.0 4.4 MEDIUM Ignored 2024-07-09 05:15:06
CentOS Stream 8 ELS kernel 4.18.0 4.4 MEDIUM Ignored 2024-07-03 10:07:11
CloudLinux 6 ELS kernel 2.6.32 4.4 MEDIUM Ignored 2024-07-02 14:25:01
CloudLinux 7 ELS kernel 3.10.0 4.4 MEDIUM Ignored 2024-08-15 12:09:04
Oracle Linux 6 ELS kernel 2.6.32 4.4 MEDIUM Ignored 2024-07-02 17:22:22