Answer in brief
CVE-2024-42276 records a Unknown severity vulnerability in nvme-pci: add missing condition check for existence of mapped data. The current sources do not mark it as known exploited. The current feed maps Linux/Linux (generic), Linux/Linux (generic), Siemens/SIMATIC S7-1500 TM MFP - GNU/Linux subsystem (generic). Check affected ranges and fixed versions before updating.
Analysis pending evidence review
HOL Guard separates source facts from reviewed analysis. See the methodology.
Answer in brief
CVE-2024-42276 records a Unknown severity vulnerability in nvme-pci: add missing condition check for existence of mapped data. The current sources do not mark it as known exploited. The current feed maps Linux/Linux (generic), Linux/Linux (generic), Siemens/SIMATIC S7-1500 TM MFP - GNU/Linux subsystem (generic). Check affected ranges and fixed versions before updating.
Analysis pending evidence review
HOL Guard separates source facts from reviewed analysis. See the methodology.
A CVSS score is not reported in the current record. The current sources do not mark it as known exploited. Treat this as a source-backed prioritization signal, not a statement about your environment.
Analysis status
Analysis pending evidence review
Factual feed record only; HOL analysis is not approved for indexing. Read the methodology.
The current feed maps Linux/Linux (generic), Linux/Linux (generic), Siemens/SIMATIC S7-1500 TM MFP - GNU/Linux subsystem (generic). Check affected ranges and fixed versions before updating.
| Package | Affected range | Fixed version |
|---|---|---|
| Linux/Linuxgeneric | >=4aedb705437f6f98b45f45c394e6803ca67abd33 <3f8ec1d6b0ebd8268307d52be8301973fa5a01ec || >=4aedb705437f6f98b45f45c394e6803ca67abd33 <be23ae63080e0bf9e246ab20207200bca6585eba || >=4aedb705437f6f98b45f45c394e6803ca67abd33 <7cc1f4cd90a00b6191cb8cda2d1302fdce59361c || >=4aedb705437f6f98b45f45c394e6803ca67abd33 <d135c3352f7c947a922da93c8e763ee6bc208b64 || >=4aedb705437f6f98b45f45c394e6803ca67abd33 <77848b379e9f85a08048a2c8b3b4a7e8396f5f83 || >=4aedb705437f6f98b45f45c394e6803ca67abd33 <70100fe721840bf6d8e5abd25b8bffe4d2e049b7 || >=4aedb705437f6f98b45f45c394e6803ca67abd33 <c31fad1470389666ac7169fe43aa65bf5b7e2cfd | 3f8ec1d6b0ebd8268307d52be8301973fa5a01ec, be23ae63080e0bf9e246ab20207200bca6585eba, 7cc1f4cd90a00b6191cb8cda2d1302fdce59361c, d135c3352f7c947a922da93c8e763ee6bc208b64, 77848b379e9f85a08048a2c8b3b4a7e8396f5f83, 70100fe721840bf6d8e5abd25b8bffe4d2e049b7, c31fad1470389666ac7169fe43aa65bf5b7e2cfd |
| Linux/Linuxgeneric | 5.2 | Not reported |
| Siemens/SIMATIC S7-1500 TM MFP - GNU/Linux subsystemgeneric | >=0 <* | * |
Published upstream
Aug 17, 2024
Evidence: source:cvelist:source_dates:source-dates:recordSource modified
Aug 5, 2026
Evidence: source:cvelist:source_dates:source-dates:recordFirst seen by HOL
Aug 5, 2026
In the Linux kernel, the following vulnerability has been resolved: nvme-pci: add missing condition check for existence of mapped data nvme_map_data() is called when request has physical segments, hence the nvme_unmap_data() should have same condition to avoid dereference.
Quoted source text, attributed separately from HOL analysis.
A CVSS score is not reported in the current record. The current sources do not mark it as known exploited. Treat this as a source-backed prioritization signal, not a statement about your environment.
Analysis status
Analysis pending evidence review
Factual feed record only; HOL analysis is not approved for indexing. Read the methodology.
The current feed maps Linux/Linux (generic), Linux/Linux (generic), Siemens/SIMATIC S7-1500 TM MFP - GNU/Linux subsystem (generic). Check affected ranges and fixed versions before updating.
| Package | Affected range | Fixed version |
|---|---|---|
| Linux/Linuxgeneric | >=4aedb705437f6f98b45f45c394e6803ca67abd33 <3f8ec1d6b0ebd8268307d52be8301973fa5a01ec || >=4aedb705437f6f98b45f45c394e6803ca67abd33 <be23ae63080e0bf9e246ab20207200bca6585eba || >=4aedb705437f6f98b45f45c394e6803ca67abd33 <7cc1f4cd90a00b6191cb8cda2d1302fdce59361c || >=4aedb705437f6f98b45f45c394e6803ca67abd33 <d135c3352f7c947a922da93c8e763ee6bc208b64 || >=4aedb705437f6f98b45f45c394e6803ca67abd33 <77848b379e9f85a08048a2c8b3b4a7e8396f5f83 || >=4aedb705437f6f98b45f45c394e6803ca67abd33 <70100fe721840bf6d8e5abd25b8bffe4d2e049b7 || >=4aedb705437f6f98b45f45c394e6803ca67abd33 <c31fad1470389666ac7169fe43aa65bf5b7e2cfd | 3f8ec1d6b0ebd8268307d52be8301973fa5a01ec, be23ae63080e0bf9e246ab20207200bca6585eba, 7cc1f4cd90a00b6191cb8cda2d1302fdce59361c, d135c3352f7c947a922da93c8e763ee6bc208b64, 77848b379e9f85a08048a2c8b3b4a7e8396f5f83, 70100fe721840bf6d8e5abd25b8bffe4d2e049b7, c31fad1470389666ac7169fe43aa65bf5b7e2cfd |
| Linux/Linuxgeneric | 5.2 | Not reported |
| Siemens/SIMATIC S7-1500 TM MFP - GNU/Linux subsystemgeneric | >=0 <* | * |
Published upstream
Aug 17, 2024
Evidence: source:cvelist:source_dates:source-dates:recordSource modified
Aug 5, 2026
Evidence: source:cvelist:source_dates:source-dates:recordFirst seen by HOL
Aug 5, 2026
In the Linux kernel, the following vulnerability has been resolved: nvme-pci: add missing condition check for existence of mapped data nvme_map_data() is called when request has physical segments, hence the nvme_unmap_data() should have same condition to avoid dereference.
Quoted source text, attributed separately from HOL analysis.