Skip to content
COOEY

EXPOSURES › CVE-2024-53104

CVE-2024-53104

HIGH ⌖ ON CISA KEV · EXPLOITED
DETAIL
SourceCISA-KEV · kev Published2025-02-05 Referencehttps://nvd.nist.gov/vuln/detail/CVE-2024-53104 ↗
⌖ EXPLOITED IN THE WILD SHAME 50/100 exploited-in-wild

A recently exploited Linux kernel vulnerability allows for privilege escalation via an out-of-bounds write in the UVC driver.

▸ RECOMMENDED ACTION  Actively exploited (CISA KEV) — remediate now, ahead of your normal patch cycle.

DESCRIPTION

Linux kernel contains an out-of-bounds write vulnerability in the uvc_parse_streaming component of the USB Video Class (UVC) driver that could allow for physical escalation of privilege.

AFFECTED FEDRAMP PRODUCTS · 0
No correlated FedRAMP products.