{"schema_version":"1.9.0","id":"CVE-2024-40941","published":"2024-07-12T12:25:16.471Z","modified":"2026-08-12T03:51:38.281063088Z","related":["ALSA-2024:5928","ALSA-2024:7000","ALSA-2024:7001","SUSE-SU-2024:2892-1","SUSE-SU-2024:2894-1","SUSE-SU-2024:2901-1","SUSE-SU-2024:2939-1","SUSE-SU-2024:2940-1","SUSE-SU-2024:2947-1","SUSE-SU-2024:3194-1","SUSE-SU-2024:3195-1","SUSE-SU-2024:3383-1","SUSE-SU-2025:20044-1","SUSE-SU-2025:20047-1"],"summary":"wifi: iwlwifi: mvm: don't read past the mfuart notifcation","details":"In the Linux kernel, the following vulnerability has been resolved:\n\nwifi: iwlwifi: mvm: don't read past the mfuart notifcation\n\nIn case the firmware sends a notification that claims it has more data\nthan it has, we will read past that was allocated for the notification.\nRemove the print of the buffer, we won't see it by default. If needed,\nwe can see the content with tracing.\n\nThis was reported by KFENCE.","affected":[{"ranges":[{"type":"GIT","repo":"https://git.kernel.org/pub/scm/linux/kernel/git/stable/linux.git","events":[{"introduced":"bdccdb854f2fb473f2ac4a6108df3cbfcedd5a87"},{"fixed":"15b37c6fab9d5e40ac399fa1c725118588ed649c"},{"fixed":"6532f18e66b384b8d4b7e5c9caca042faaa9e8de"},{"fixed":"46c59a25337049a2a230ce7f7c3b9f21d0aaaad7"},{"fixed":"65686118845d427df27ee83a6ddd4885596b0805"},{"fixed":"a8bc8276af9aeacabb773f0c267cfcdb847c6f2d"},{"fixed":"a05018739a5e6b9dc112c95bd4c59904062c8940"},{"fixed":"acdfa33c3cf5e1cd185cc1e0486bd0ea9f09c154"},{"fixed":"4bb95f4535489ed830cf9b34b0a891e384d1aee4"}]}],"database_specific":{"source":"https://storage.googleapis.com/cve-osv-conversion/osv-output/CVE-2024-40941.json"}},{"package":{"name":"Kernel","ecosystem":"Linux"},"ranges":[{"type":"ECOSYSTEM","events":[{"introduced":"4.12.0"},{"fixed":"4.19.317"}]},{"type":"ECOSYSTEM","events":[{"introduced":"4.20.0"},{"fixed":"5.4.279"}]},{"type":"ECOSYSTEM","events":[{"introduced":"5.5.0"},{"fixed":"5.10.221"}]},{"type":"ECOSYSTEM","events":[{"introduced":"5.11.0"},{"fixed":"5.15.162"}]},{"type":"ECOSYSTEM","events":[{"introduced":"5.16.0"},{"fixed":"6.1.95"}]},{"type":"ECOSYSTEM","events":[{"introduced":"6.2.0"},{"fixed":"6.6.35"}]},{"type":"ECOSYSTEM","events":[{"introduced":"6.7.0"},{"fixed":"6.9.6"}]}],"database_specific":{"source":"https://storage.googleapis.com/cve-osv-conversion/osv-output/CVE-2024-40941.json"}}],"references":[{"type":"WEB","url":"https://cert-portal.siemens.com/productcert/html/ssa-265688.html"},{"type":"WEB","url":"https://cert-portal.siemens.com/productcert/html/ssa-355557.html"},{"type":"WEB","url":"https://git.kernel.org/stable/c/15b37c6fab9d5e40ac399fa1c725118588ed649c"},{"type":"WEB","url":"https://git.kernel.org/stable/c/46c59a25337049a2a230ce7f7c3b9f21d0aaaad7"},{"type":"WEB","url":"https://git.kernel.org/stable/c/4bb95f4535489ed830cf9b34b0a891e384d1aee4"},{"type":"WEB","url":"https://git.kernel.org/stable/c/6532f18e66b384b8d4b7e5c9caca042faaa9e8de"},{"type":"WEB","url":"https://git.kernel.org/stable/c/65686118845d427df27ee83a6ddd4885596b0805"},{"type":"WEB","url":"https://git.kernel.org/stable/c/a05018739a5e6b9dc112c95bd4c59904062c8940"},{"type":"WEB","url":"https://git.kernel.org/stable/c/a8bc8276af9aeacabb773f0c267cfcdb847c6f2d"},{"type":"WEB","url":"https://git.kernel.org/stable/c/acdfa33c3cf5e1cd185cc1e0486bd0ea9f09c154"},{"type":"WEB","url":"https://lists.debian.org/debian-lts-announce/2025/01/msg00001.html"},{"type":"ADVISORY","url":"https://github.com/CVEProject/cvelistV5/tree/main/cves/2024/40xxx/CVE-2024-40941.json"},{"type":"ADVISORY","url":"https://nvd.nist.gov/vuln/detail/CVE-2024-40941"},{"type":"PACKAGE","url":"https://git.kernel.org/pub/scm/linux/kernel/git/stable/linux.git"}],"database_specific":{"cna_assigner":"Linux","osv_generated_from":"https://github.com/CVEProject/cvelistV5/tree/main/cves/2024/40xxx/CVE-2024-40941.json"},"severity":[{"type":"CVSS_V3","score":"CVSS:3.1/AV:A/AC:L/PR:N/UI:N/S:U/C:H/I:N/A:H"}]}