CVE-2024-35813 - CVE House
Back to Database
Status published Unknown CVE-2024-35813

mmc: core: Avoid negative index with array access

Vulnerability Description

In the Linux kernel, the following vulnerability has been resolved: mmc: core: Avoid negative index with array access Commit 4d0c8d0aef63 ("mmc: core: Use mrq.sbc in close-ended ffu") assigns prev_idata = idatas[i - 1], but doesn't check that the iterator i is greater than zero. Let's fix this by adding a check.

Impact Analysis

Refer to official advisory for detailed impact metrics.

Remediation

Ensure systems are updated to the latest vendor-supplied patch levels.

THREAT MONITOR

Am I Vulnerable?

Launch our assessment wizard to check if your infrastructure is exposed to • CVE-2024-35813

Credits & Attribution

No credits recorded in the NVD database.

Affected Vendor

Affected Software

Linux
Vulnerable Versions:
f49f9e802785291149bdc9c824414de4604226b4, 59020bf0999ff7da8aedcd00ef8f0d75d93b6d20, 50b8b7a22e90bab9f1949b64a88ff17ab10913ec, c4edcd134bb72b3b0acc884612d624e48c9d057f, 1653a8102868264f3488c298a9f20af2add9a288, eed9119f8f8e8fbf225c08abdbb58597fba807e0, 4d0c8d0aef6355660b6775d57ccd5d4ea2e15802, 5.4.269, 5.10.210, 5.15.149, 6.1.76, 6.6.15, 6.7.3, 6.8, 0, 5.4.274, 5.10.215, 5.15.154, 6.1.84, 6.6.24, 6.7.12, 6.8.3, 6.9

Timeline

Official Publish: May 17th, 2024
Last Modified: May 23rd, 2026
Added to House: July 22nd, 2026

CVSS Vectors

No vector data available

Weaknesses (CWE)

No CWE data available

MITRE ATT&CK TTPs

No associated TTPs found for this vulnerability.