U.S. flag   An official website of the United States government
Dot gov

Official websites use .gov
A .gov website belongs to an official government organization in the United States.

Https

Secure .gov websites use HTTPS
A lock (Dot gov) or https:// means you've safely connected to the .gov website. Share sensitive information only on official, secure websites.

CVE-2024-46844 Detail

Description

In the Linux kernel, the following vulnerability has been resolved: um: line: always fill *error_out in setup_one_line() The pointer isn't initialized by callers, but I have encountered cases where it's still printed; initialize it in all possible cases in setup_one_line().


Metrics

NVD enrichment efforts reference publicly available information to associate vector strings. CVSS information contributed by other sources is also displayed.
CVSS 4.0 Severity and Vector Strings:

NIST CVSS score
NIST: NVD
N/A
NVD assessment not yet provided.

References to Advisories, Solutions, and Tools

By selecting these links, you will be leaving NIST webspace. We have provided these links to other web sites because they may have information that would be of interest to you. No inferences should be drawn on account of other sites being referenced, or not, from this page. There may be other web sites that are more appropriate for your purpose. NIST does not necessarily endorse the views expressed, or concur with the facts presented on these sites. Further, NIST does not endorse any commercial products that may be mentioned on these sites. Please address comments about this page to nvd@nist.gov.

Hyperlink Resource
https://git.kernel.org/stable/c/289979d64573f43df1d0e6bc6435de63a0d69cdf Patch 
https://git.kernel.org/stable/c/3bedb7ce080690d0d6172db790790c1219bcbdd5 Patch 
https://git.kernel.org/stable/c/43f782c27907f306c664b6614fd6f264ac32cce6 Patch 
https://git.kernel.org/stable/c/824ac4a5edd3f7494ab1996826c4f47f8ef0f63d Patch 
https://git.kernel.org/stable/c/96301fdc2d533a196197c055af875fe33d47ef84 Patch 
https://git.kernel.org/stable/c/c8944d449fda9f58c03bd99649b2df09948fc874 Patch 
https://git.kernel.org/stable/c/ec5b47a370177d79ae7773858042c107e21f8ecc Patch 
https://git.kernel.org/stable/c/fc843d3837ebcb1c16d3768ef3eb55e25d5331f2 Patch 

Weakness Enumeration

CWE-ID CWE Name Source
CWE-824 Access of Uninitialized Pointer cwe source acceptance level NIST  

Known Affected Software Configurations Switch to CPE 2.2

CPEs loading, please wait.

Denotes Vulnerable Software
Are we missing a CPE here? Please let us know.

Change History

2 change records found show changes

Quick Info

CVE Dictionary Entry:
CVE-2024-46844
NVD Published Date:
09/27/2024
NVD Last Modified:
10/02/2024
Source:
kernel.org