Known Exploited Vulnerabilities CVE-2024-53150

Linux Kernel contains an out-of-bounds read vulnerability in the USB-audio driver that allows a local, privileged attacker to obtain potentially sensitive information.

Mappings

Capability ID Capability Description Mapping Type ATT&CK ID ATT&CK Name Notes
CVE-2024-53150 Linux Kernel Out-of-Bounds Read Vulnerability exploitation_technique T1091 Replication Through Removable Media
Comments
By crafting a malicious USB audio device, an attacker can trigger an out-of-bounds read error in the kernel, potentially exposing sensitive kernel information.
References
CVE-2024-53150 Linux Kernel Out-of-Bounds Read Vulnerability primary_impact T1005 Data from Local System
Comments
By crafting a malicious USB audio device, an attacker can trigger an out-of-bounds read error in the kernel, potentially exposing sensitive kernel information.
References
CVE-2024-53150 Linux Kernel Out-of-Bounds Read Vulnerability secondary_impact T1011 Exfiltration Over Other Network Medium
Comments
By crafting a malicious USB audio device, an attacker can trigger an out-of-bounds read error in the kernel, potentially exposing sensitive kernel information.
References