{"id":"CVE-2024-50158","summary":"RDMA/bnxt_re: Fix out of bound check","details":"In the Linux kernel, the following vulnerability has been resolved:\n\nRDMA/bnxt_re: Fix out of bound check\n\nDriver exports pacing stats only on GenP5 and P7 adapters. But while\nparsing the pacing stats, driver has a check for \"rdev-\u003edbr_pacing\".  This\ncaused a trace when KASAN is enabled.\n\nBUG: KASAN: slab-out-of-bounds in bnxt_re_get_hw_stats+0x2b6a/0x2e00 [bnxt_re]\nWrite of size 8 at addr ffff8885942a6340 by task modprobe/4809","modified":"2026-03-20T12:39:36.483939Z","published":"2024-11-07T09:31:35.264Z","related":["MGASA-2024-0368","MGASA-2024-0369","SUSE-SU-2024:4314-1","SUSE-SU-2024:4316-1","SUSE-SU-2024:4318-1","SUSE-SU-2024:4387-1","SUSE-SU-2025:20163-1","SUSE-SU-2025:20164-1","SUSE-SU-2025:20246-1","SUSE-SU-2025:20247-1","USN-7276-1","USN-7277-1","openSUSE-SU-2024:14500-1","openSUSE-SU-2025:14705-1"],"database_specific":{"cna_assigner":"Linux","osv_generated_from":"https://github.com/CVEProject/cvelistV5/tree/main/cves/2024/50xxx/CVE-2024-50158.json"},"references":[{"type":"WEB","url":"https://git.kernel.org/stable/c/05c5fcc1869a08e36a29691699b6534e5a00a82b"},{"type":"WEB","url":"https://git.kernel.org/stable/c/a9e6e7443922ac0a48243c35d03834c96926bff1"},{"type":"WEB","url":"https://git.kernel.org/stable/c/c11b9b03ea5252898f91f3388c248f0dc47bda52"},{"type":"ADVISORY","url":"https://github.com/CVEProject/cvelistV5/tree/main/cves/2024/50xxx/CVE-2024-50158.json"},{"type":"ADVISORY","url":"https://nvd.nist.gov/vuln/detail/CVE-2024-50158"},{"type":"PACKAGE","url":"https://git.kernel.org/pub/scm/linux/kernel/git/stable/linux.git"}],"affected":[{"ranges":[{"type":"GIT","repo":"https://git.kernel.org/pub/scm/linux/kernel/git/stable/linux.git","events":[{"introduced":"8b6573ff3420a2da1deb469a480dbc454745f784"},{"fixed":"05c5fcc1869a08e36a29691699b6534e5a00a82b"},{"fixed":"c11b9b03ea5252898f91f3388c248f0dc47bda52"},{"fixed":"a9e6e7443922ac0a48243c35d03834c96926bff1"}]}],"database_specific":{"source":"https://storage.googleapis.com/osv-test-cve-osv-conversion/osv-output/CVE-2024-50158.json"}}],"schema_version":"1.7.5","severity":[{"type":"CVSS_V3","score":"CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H"}]}