{"dataType":"CVE_RECORD","cveMetadata":{"cveId":"CVE-2024-27047","assignerOrgId":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","state":"PUBLISHED","assignerShortName":"Linux","dateReserved":"2024-02-19T14:20:24.213Z","datePublished":"2024-05-01T12:54:25.156Z","dateUpdated":"2025-05-04T09:03:04.406Z"},"containers":{"cna":{"providerMetadata":{"orgId":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","shortName":"Linux","dateUpdated":"2025-05-04T09:03:04.406Z"},"descriptions":[{"lang":"en","value":"In the Linux kernel, the following vulnerability has been resolved:\n\nnet: phy: fix phy_get_internal_delay accessing an empty array\n\nThe phy_get_internal_delay function could try to access to an empty\narray in the case that the driver is calling phy_get_internal_delay\nwithout defining delay_values and rx-internal-delay-ps or\ntx-internal-delay-ps is defined to 0 in the device-tree.\nThis will lead to \"unable to handle kernel NULL pointer dereference at\nvirtual address 0\". To avoid this kernel oops, the test should be delay\n>= 0. As there is already delay < 0 test just before, the test could\nonly be size == 0."}],"affected":[{"product":"Linux","vendor":"Linux","defaultStatus":"unaffected","repo":"https://git.kernel.org/pub/scm/linux/kernel/git/stable/linux.git","programFiles":["drivers/net/phy/phy_device.c"],"versions":[{"version":"92252eec913b2dd5e7b5de11ea3efa2e64d65cf4","lessThan":"06dd21045a7e8bc8701b0ebedcd9a30a6325878b","status":"affected","versionType":"git"},{"version":"92252eec913b2dd5e7b5de11ea3efa2e64d65cf4","lessThan":"0e939a002c8a7d66e60bd0ea6b281fb39d713c1a","status":"affected","versionType":"git"},{"version":"92252eec913b2dd5e7b5de11ea3efa2e64d65cf4","lessThan":"2a2ff709511617de9c6c072eeee82bcbbdfecaf8","status":"affected","versionType":"git"},{"version":"92252eec913b2dd5e7b5de11ea3efa2e64d65cf4","lessThan":"589ec16174dd9378953b8232ae76fad0a96e1563","status":"affected","versionType":"git"},{"version":"92252eec913b2dd5e7b5de11ea3efa2e64d65cf4","lessThan":"c0691de7df1d51482a52cac93b7fe82fd9dd296b","status":"affected","versionType":"git"},{"version":"92252eec913b2dd5e7b5de11ea3efa2e64d65cf4","lessThan":"0307cf443308ecc6be9b2ca312bb31bae5e5a7ad","status":"affected","versionType":"git"},{"version":"92252eec913b2dd5e7b5de11ea3efa2e64d65cf4","lessThan":"4469c0c5b14a0919f5965c7ceac96b523eb57b79","status":"affected","versionType":"git"}]},{"product":"Linux","vendor":"Linux","defaultStatus":"affected","repo":"https://git.kernel.org/pub/scm/linux/kernel/git/stable/linux.git","programFiles":["drivers/net/phy/phy_device.c"],"versions":[{"version":"5.9","status":"affected"},{"version":"0","lessThan":"5.9","status":"unaffected","versionType":"semver"},{"version":"5.10.214","lessThanOrEqual":"5.10.*","status":"unaffected","versionType":"semver"},{"version":"5.15.153","lessThanOrEqual":"5.15.*","status":"unaffected","versionType":"semver"},{"version":"6.1.83","lessThanOrEqual":"6.1.*","status":"unaffected","versionType":"semver"},{"version":"6.6.23","lessThanOrEqual":"6.6.*","status":"unaffected","versionType":"semver"},{"version":"6.7.11","lessThanOrEqual":"6.7.*","status":"unaffected","versionType":"semver"},{"version":"6.8.2","lessThanOrEqual":"6.8.*","status":"unaffected","versionType":"semver"},{"version":"6.9","lessThanOrEqual":"*","status":"unaffected","versionType":"original_commit_for_fix"}]}],"cpeApplicability":[{"nodes":[{"operator":"OR","negate":false,"cpeMatch":[{"vulnerable":true,"criteria":"cpe:2.3:o:linux:linux_kernel:*:*:*:*:*:*:*:*","versionStartIncluding":"5.9","versionEndExcluding":"5.10.214"},{"vulnerable":true,"criteria":"cpe:2.3:o:linux:linux_kernel:*:*:*:*:*:*:*:*","versionStartIncluding":"5.9","versionEndExcluding":"5.15.153"},{"vulnerable":true,"criteria":"cpe:2.3:o:linux:linux_kernel:*:*:*:*:*:*:*:*","versionStartIncluding":"5.9","versionEndExcluding":"6.1.83"},{"vulnerable":true,"criteria":"cpe:2.3:o:linux:linux_kernel:*:*:*:*:*:*:*:*","versionStartIncluding":"5.9","versionEndExcluding":"6.6.23"},{"vulnerable":true,"criteria":"cpe:2.3:o:linux:linux_kernel:*:*:*:*:*:*:*:*","versionStartIncluding":"5.9","versionEndExcluding":"6.7.11"},{"vulnerable":true,"criteria":"cpe:2.3:o:linux:linux_kernel:*:*:*:*:*:*:*:*","versionStartIncluding":"5.9","versionEndExcluding":"6.8.2"},{"vulnerable":true,"criteria":"cpe:2.3:o:linux:linux_kernel:*:*:*:*:*:*:*:*","versionStartIncluding":"5.9","versionEndExcluding":"6.9"}]}]}],"references":[{"url":"https://git.kernel.org/stable/c/06dd21045a7e8bc8701b0ebedcd9a30a6325878b"},{"url":"https://git.kernel.org/stable/c/0e939a002c8a7d66e60bd0ea6b281fb39d713c1a"},{"url":"https://git.kernel.org/stable/c/2a2ff709511617de9c6c072eeee82bcbbdfecaf8"},{"url":"https://git.kernel.org/stable/c/589ec16174dd9378953b8232ae76fad0a96e1563"},{"url":"https://git.kernel.org/stable/c/c0691de7df1d51482a52cac93b7fe82fd9dd296b"},{"url":"https://git.kernel.org/stable/c/0307cf443308ecc6be9b2ca312bb31bae5e5a7ad"},{"url":"https://git.kernel.org/stable/c/4469c0c5b14a0919f5965c7ceac96b523eb57b79"}],"title":"net: phy: fix phy_get_internal_delay accessing an empty array","x_generator":{"engine":"bippy-1.2.0"}},"adp":[{"metrics":[{"other":{"type":"ssvc","content":{"id":"CVE-2024-27047","role":"CISA Coordinator","options":[{"Exploitation":"none"},{"Automatable":"no"},{"Technical Impact":"partial"}],"version":"2.0.3","timestamp":"2024-05-09T18:38:46.768621Z"}}}],"title":"CISA ADP Vulnrichment","providerMetadata":{"orgId":"134c704f-9b21-4f2e-91b3-4a467353bcc0","shortName":"CISA-ADP","dateUpdated":"2024-07-05T17:21:42.449Z"}},{"providerMetadata":{"orgId":"af854a3a-2127-422b-91ae-364da2661108","shortName":"CVE","dateUpdated":"2024-08-02T00:21:05.863Z"},"title":"CVE Program Container","references":[{"url":"https://git.kernel.org/stable/c/06dd21045a7e8bc8701b0ebedcd9a30a6325878b","tags":["x_transferred"]},{"url":"https://git.kernel.org/stable/c/0e939a002c8a7d66e60bd0ea6b281fb39d713c1a","tags":["x_transferred"]},{"url":"https://git.kernel.org/stable/c/2a2ff709511617de9c6c072eeee82bcbbdfecaf8","tags":["x_transferred"]},{"url":"https://git.kernel.org/stable/c/589ec16174dd9378953b8232ae76fad0a96e1563","tags":["x_transferred"]},{"url":"https://git.kernel.org/stable/c/c0691de7df1d51482a52cac93b7fe82fd9dd296b","tags":["x_transferred"]},{"url":"https://git.kernel.org/stable/c/0307cf443308ecc6be9b2ca312bb31bae5e5a7ad","tags":["x_transferred"]},{"url":"https://git.kernel.org/stable/c/4469c0c5b14a0919f5965c7ceac96b523eb57b79","tags":["x_transferred"]},{"url":"https://lists.debian.org/debian-lts-announce/2024/06/msg00017.html","tags":["x_transferred"]}]}]},"dataVersion":"5.1"}