February 5, 2025 · Applied Cybernetics Group
CVE-2024-53104 — Linux Kernel
Linux Kernel Out-of-Bounds Write Vulnerability
- Added to KEV
2025-02-05- Federal due date
2025-02-26- Vendor
- Linux
- Product
- Kernel
- EPSS
- 95.3th percentile (score 0.180, as of
2026-06-08) - NVD CVSS v3.1
- —
- Ransomware use
- Unknown
- Upstream
- https://nvd.nist.gov/vuln/detail/CVE-2024-53104
CISA short description
Linux kernel contains an out-of-bounds write vulnerability in the uvc_parse_streaming component of the USB Video Class (UVC) driver that could allow for physical escalation of privilege.
Required action
Apply mitigations per vendor instructions or discontinue use of the product if mitigations are unavailable.