Known Exploited Vulnerabilities CVE-2024-53197

Linux Kernel contains an out-of-bounds access vulnerability in the USB-audio driver that allows an attacker with physical access to the system to use a malicious USB device to potentially manipulate system memory, escalate privileges, or execute arbitrary code.

Mappings

Capability ID Capability Description Mapping Type ATT&CK ID ATT&CK Name Notes
CVE-2024-53197 Linux Kernel Out-of-Bounds Access Vulnerability exploitation_technique T1091 Replication Through Removable Media
Comments
Using a malicious USB device, an attacker can trigger an out-of-bounds heap write in the kernel, allowing the attacker to obtain root access and potentiall execute arbitrary code.
References
CVE-2024-53197 Linux Kernel Out-of-Bounds Access Vulnerability exploitation_technique T1068 Exploitation for Privilege Escalation
Comments
Using a malicious USB device, an attacker can trigger an out-of-bounds heap write in the kernel, allowing the attacker to obtain root access and potentiall execute arbitrary code.
References
CVE-2024-53197 Linux Kernel Out-of-Bounds Access Vulnerability primary_impact T1059 Command and Scripting Interpreter
Comments
Using a malicious USB device, an attacker can trigger an out-of-bounds write in the kernel, allowing the attacker to obtain root access and potentiall execute arbitrary code.
References