{"id":"CVE-2024-49973","summary":"r8169: add tally counter fields added with RTL8125","details":"In the Linux kernel, the following vulnerability has been resolved:\n\nr8169: add tally counter fields added with RTL8125\n\nRTL8125 added fields to the tally counter, what may result in the chip\ndma'ing these new fields to unallocated memory. Therefore make sure\nthat the allocated memory area is big enough to hold all of the\ntally counter values, even if we use only parts of it.","modified":"2026-08-12T03:30:22.449588789Z","published":"2024-10-21T18:02:21.696Z","related":["SUSE-SU-2024:3983-1","SUSE-SU-2024:3984-1","SUSE-SU-2024:3985-1","SUSE-SU-2024:3986-1","SUSE-SU-2024:4318-1","SUSE-SU-2024:4364-1","SUSE-SU-2024:4387-1","SUSE-SU-2025:20163-1","SUSE-SU-2025:20164-1","SUSE-SU-2025:20246-1","SUSE-SU-2025:20247-1","USN-7276-1","USN-7277-1","openSUSE-SU-2024:14500-1","openSUSE-SU-2025:14705-1"],"database_specific":{"osv_generated_from":"https://github.com/CVEProject/cvelistV5/tree/main/cves/2024/49xxx/CVE-2024-49973.json","cna_assigner":"Linux"},"references":[{"type":"WEB","url":"https://cert-portal.siemens.com/productcert/html/ssa-265688.html"},{"type":"WEB","url":"https://cert-portal.siemens.com/productcert/html/ssa-355557.html"},{"type":"WEB","url":"https://git.kernel.org/stable/c/1c723d785adb711496bc64c24240f952f4faaabf"},{"type":"WEB","url":"https://git.kernel.org/stable/c/21950321ad33d7613b1453f4c503d7b1871deb61"},{"type":"WEB","url":"https://git.kernel.org/stable/c/585c048d15ed559f20cb94c8fa2f30077efa4fbc"},{"type":"WEB","url":"https://git.kernel.org/stable/c/64648ae8c97ec5a3165021627f5a1658ebe081ca"},{"type":"WEB","url":"https://git.kernel.org/stable/c/92bc8647b4d65f4d4bf8afdb206321c1bc55a486"},{"type":"WEB","url":"https://git.kernel.org/stable/c/991e8b0bab669b7d06927c3e442b3352532e8581"},{"type":"WEB","url":"https://git.kernel.org/stable/c/ced8e8b8f40accfcce4a2bbd8b150aa76d5eff9a"},{"type":"WEB","url":"https://git.kernel.org/stable/c/fe44b3bfbf0c74df5712f44458689d0eccccf47d"},{"type":"WEB","url":"https://lists.debian.org/debian-lts-announce/2025/01/msg00001.html"},{"type":"WEB","url":"https://lists.debian.org/debian-lts-announce/2025/03/msg00002.html"},{"type":"ADVISORY","url":"https://github.com/CVEProject/cvelistV5/tree/main/cves/2024/49xxx/CVE-2024-49973.json"},{"type":"ADVISORY","url":"https://nvd.nist.gov/vuln/detail/CVE-2024-49973"},{"type":"PACKAGE","url":"https://git.kernel.org/pub/scm/linux/kernel/git/stable/linux.git"}],"affected":[{"ranges":[{"type":"GIT","repo":"https://git.kernel.org/pub/scm/linux/kernel/git/stable/linux.git","events":[{"introduced":"f1bce4ad2f1cee6759711904b9fffe4a3dd8af87"},{"fixed":"64648ae8c97ec5a3165021627f5a1658ebe081ca"},{"fixed":"991e8b0bab669b7d06927c3e442b3352532e8581"},{"fixed":"21950321ad33d7613b1453f4c503d7b1871deb61"},{"fixed":"fe44b3bfbf0c74df5712f44458689d0eccccf47d"},{"fixed":"1c723d785adb711496bc64c24240f952f4faaabf"},{"fixed":"92bc8647b4d65f4d4bf8afdb206321c1bc55a486"},{"fixed":"585c048d15ed559f20cb94c8fa2f30077efa4fbc"},{"fixed":"ced8e8b8f40accfcce4a2bbd8b150aa76d5eff9a"}]}],"database_specific":{"source":"https://storage.googleapis.com/osv-test-cve-osv-conversion/osv-output/CVE-2024-49973.json"}},{"package":{"name":"Kernel","ecosystem":"Linux"},"ranges":[{"type":"ECOSYSTEM","events":[{"introduced":"5.4.0"},{"fixed":"5.4.285"}]},{"type":"ECOSYSTEM","events":[{"introduced":"5.5.0"},{"fixed":"5.10.227"}]},{"type":"ECOSYSTEM","events":[{"introduced":"5.11.0"},{"fixed":"5.15.168"}]},{"type":"ECOSYSTEM","events":[{"introduced":"5.16.0"},{"fixed":"6.1.113"}]},{"type":"ECOSYSTEM","events":[{"introduced":"6.2.0"},{"fixed":"6.6.55"}]},{"type":"ECOSYSTEM","events":[{"introduced":"6.7.0"},{"fixed":"6.10.14"}]},{"type":"ECOSYSTEM","events":[{"introduced":"6.11.0"},{"fixed":"6.11.3"}]}],"database_specific":{"source":"https://storage.googleapis.com/osv-test-cve-osv-conversion/osv-output/CVE-2024-49973.json"}}],"schema_version":"1.9.0","severity":[{"type":"CVSS_V3","score":"CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H"}]}