Answer in brief
CVE-2024-26994 records a Unknown severity vulnerability in speakup: Avoid crash on very long word. The current sources do not mark it as known exploited. The current feed maps Linux/Linux (generic), Linux/Linux (generic). Check affected ranges and fixed versions before updating.
Analysis pending evidence review
HOL Guard separates source facts from reviewed analysis. See the methodology.
Answer in brief
CVE-2024-26994 records a Unknown severity vulnerability in speakup: Avoid crash on very long word. The current sources do not mark it as known exploited. The current feed maps Linux/Linux (generic), Linux/Linux (generic). Check affected ranges and fixed versions before updating.
Analysis pending evidence review
HOL Guard separates source facts from reviewed analysis. See the methodology.
A CVSS score is not reported in the current record. The current sources do not mark it as known exploited. Treat this as a source-backed prioritization signal, not a statement about your environment.
Analysis status
Analysis pending evidence review
Factual feed record only; HOL analysis is not approved for indexing. Read the methodology.
The current feed maps Linux/Linux (generic), Linux/Linux (generic). Check affected ranges and fixed versions before updating.
| Package | Affected range | Fixed version |
|---|---|---|
| Linux/Linuxgeneric | 2.6.37 | Not reported |
| Linux/Linuxgeneric | >=c6e3fd22cd538365bfeb82997d5b89562e077d42 <756c5cb7c09e537b87b5d3acafcb101b2ccf394f || >=c6e3fd22cd538365bfeb82997d5b89562e077d42 <8f6b62125befe1675446923e4171eac2c012959c || >=c6e3fd22cd538365bfeb82997d5b89562e077d42 <6401038acfa24cba9c28cce410b7505efadd0222 || >=c6e3fd22cd538365bfeb82997d5b89562e077d42 <0d130158db29f5e0b3893154908cf618896450a8 || >=c6e3fd22cd538365bfeb82997d5b89562e077d42 <89af25bd4b4bf6a71295f07e07a8ae7dc03c6595 || >=c6e3fd22cd538365bfeb82997d5b89562e077d42 <8defb1d22ba0395b81feb963b96e252b097ba76f || >=c6e3fd22cd538365bfeb82997d5b89562e077d42 <0efb15c14c493263cb3a5f65f5ddfd4603d19a76 || >=c6e3fd22cd538365bfeb82997d5b89562e077d42 <c8d2f34ea96ea3bce6ba2535f867f0d4ee3b22e1 | 756c5cb7c09e537b87b5d3acafcb101b2ccf394f, 8f6b62125befe1675446923e4171eac2c012959c, 6401038acfa24cba9c28cce410b7505efadd0222, 0d130158db29f5e0b3893154908cf618896450a8, 89af25bd4b4bf6a71295f07e07a8ae7dc03c6595, 8defb1d22ba0395b81feb963b96e252b097ba76f, 0efb15c14c493263cb3a5f65f5ddfd4603d19a76, c8d2f34ea96ea3bce6ba2535f867f0d4ee3b22e1 |
Published upstream
May 1, 2024
Evidence: source:cvelist:source_dates:source-dates:recordSource modified
Aug 5, 2026
Evidence: source:cvelist:source_dates:source-dates:recordFirst seen by HOL
Aug 5, 2026
In the Linux kernel, the following vulnerability has been resolved: speakup: Avoid crash on very long word In case a console is set up really large and contains a really long word (> 256 characters), we have to stop before the length of the word buffer.
Quoted source text, attributed separately from HOL analysis.
A CVSS score is not reported in the current record. The current sources do not mark it as known exploited. Treat this as a source-backed prioritization signal, not a statement about your environment.
Analysis status
Analysis pending evidence review
Factual feed record only; HOL analysis is not approved for indexing. Read the methodology.
The current feed maps Linux/Linux (generic), Linux/Linux (generic). Check affected ranges and fixed versions before updating.
| Package | Affected range | Fixed version |
|---|---|---|
| Linux/Linuxgeneric | 2.6.37 | Not reported |
| Linux/Linuxgeneric | >=c6e3fd22cd538365bfeb82997d5b89562e077d42 <756c5cb7c09e537b87b5d3acafcb101b2ccf394f || >=c6e3fd22cd538365bfeb82997d5b89562e077d42 <8f6b62125befe1675446923e4171eac2c012959c || >=c6e3fd22cd538365bfeb82997d5b89562e077d42 <6401038acfa24cba9c28cce410b7505efadd0222 || >=c6e3fd22cd538365bfeb82997d5b89562e077d42 <0d130158db29f5e0b3893154908cf618896450a8 || >=c6e3fd22cd538365bfeb82997d5b89562e077d42 <89af25bd4b4bf6a71295f07e07a8ae7dc03c6595 || >=c6e3fd22cd538365bfeb82997d5b89562e077d42 <8defb1d22ba0395b81feb963b96e252b097ba76f || >=c6e3fd22cd538365bfeb82997d5b89562e077d42 <0efb15c14c493263cb3a5f65f5ddfd4603d19a76 || >=c6e3fd22cd538365bfeb82997d5b89562e077d42 <c8d2f34ea96ea3bce6ba2535f867f0d4ee3b22e1 | 756c5cb7c09e537b87b5d3acafcb101b2ccf394f, 8f6b62125befe1675446923e4171eac2c012959c, 6401038acfa24cba9c28cce410b7505efadd0222, 0d130158db29f5e0b3893154908cf618896450a8, 89af25bd4b4bf6a71295f07e07a8ae7dc03c6595, 8defb1d22ba0395b81feb963b96e252b097ba76f, 0efb15c14c493263cb3a5f65f5ddfd4603d19a76, c8d2f34ea96ea3bce6ba2535f867f0d4ee3b22e1 |
Published upstream
May 1, 2024
Evidence: source:cvelist:source_dates:source-dates:recordSource modified
Aug 5, 2026
Evidence: source:cvelist:source_dates:source-dates:recordFirst seen by HOL
Aug 5, 2026
In the Linux kernel, the following vulnerability has been resolved: speakup: Avoid crash on very long word In case a console is set up really large and contains a really long word (> 256 characters), we have to stop before the length of the word buffer.
Quoted source text, attributed separately from HOL analysis.