Answer in brief
CVE-2024-53104 records a High severity vulnerability in media: uvcvideo: Skip parsing frames of type UVC_VS_UNDEFINED in uvc_parse_format. The current sources mark it as known exploited. The current feed maps Linux/Linux (generic), Linux/Linux (generic). Check affected ranges and fixed versions before updating.
Analysis pending evidence review
HOL Guard separates source facts from reviewed analysis. See the methodology.
Answer in brief
CVE-2024-53104 records a High severity vulnerability in media: uvcvideo: Skip parsing frames of type UVC_VS_UNDEFINED in uvc_parse_format. The current sources mark it as known exploited. The current feed maps Linux/Linux (generic), Linux/Linux (generic). Check affected ranges and fixed versions before updating.
Analysis pending evidence review
HOL Guard separates source facts from reviewed analysis. See the methodology.
A CVSS score is not reported in the current record. Known-exploitation status makes exposure review time-sensitive. Treat this as a source-backed prioritization signal, not a statement about your environment.
Analysis status
Analysis pending evidence review
Factual feed record only; HOL analysis is not approved for indexing. Read the methodology.
The current feed maps Linux/Linux (generic), Linux/Linux (generic). Check affected ranges and fixed versions before updating.
| Package | Affected range | Fixed version |
|---|---|---|
| Linux/Linuxgeneric | >=c0efd232929c2cd87238de2cccdaf4e845be5b0c <95edf13a48e75dc2cc5b0bc57bf90d6948a22fe8 || >=c0efd232929c2cd87238de2cccdaf4e845be5b0c <684022f81f128338fe3587ec967459669a1204ae || >=c0efd232929c2cd87238de2cccdaf4e845be5b0c <faff5bbb2762c44ec7426037b3000e77a11d6773 || >=c0efd232929c2cd87238de2cccdaf4e845be5b0c <467d84dc78c9abf6b217ada22b3fdba336262e29 || >=c0efd232929c2cd87238de2cccdaf4e845be5b0c <beced2cb09b58c1243733f374c560a55382003d6 || >=c0efd232929c2cd87238de2cccdaf4e845be5b0c <575a562f7a3ec2d54ff77ab6810e3fbceef2a91d || >=c0efd232929c2cd87238de2cccdaf4e845be5b0c <622ad10aae5f5e03b7927ea95f7f32812f692bb5 || >=c0efd232929c2cd87238de2cccdaf4e845be5b0c <1ee9d9122801eb688783acd07791f2906b87cb4f || >=c0efd232929c2cd87238de2cccdaf4e845be5b0c <ecf2b43018da9579842c774b7f35dbe11b5c38dd | 95edf13a48e75dc2cc5b0bc57bf90d6948a22fe8, 684022f81f128338fe3587ec967459669a1204ae, faff5bbb2762c44ec7426037b3000e77a11d6773, 467d84dc78c9abf6b217ada22b3fdba336262e29, beced2cb09b58c1243733f374c560a55382003d6, 575a562f7a3ec2d54ff77ab6810e3fbceef2a91d, 622ad10aae5f5e03b7927ea95f7f32812f692bb5, 1ee9d9122801eb688783acd07791f2906b87cb4f, ecf2b43018da9579842c774b7f35dbe11b5c38dd |
| Linux/Linuxgeneric | 2.6.26 | Not reported |
Published upstream
Dec 2, 2024
Evidence: source:cvelist:source_dates:source-dates:recordSource modified
May 11, 2026
Evidence: source:cvelist:source_dates:source-dates:recordFirst seen by HOL
May 24, 2026
Added to CISA KEV
Feb 5, 2025
Evidence: source:kev:kev:kev:recordIn the Linux kernel, the following vulnerability has been resolved: media: uvcvideo: Skip parsing frames of type UVC_VS_UNDEFINED in uvc_parse_format This can lead to out of bounds writes since frames of this type were not taken into account when calculating the size of the frames buffer in uvc_parse_streaming.
Quoted source text, attributed separately from HOL analysis.
A CVSS score is not reported in the current record. Known-exploitation status makes exposure review time-sensitive. Treat this as a source-backed prioritization signal, not a statement about your environment.
Analysis status
Analysis pending evidence review
Factual feed record only; HOL analysis is not approved for indexing. Read the methodology.
The current feed maps Linux/Linux (generic), Linux/Linux (generic). Check affected ranges and fixed versions before updating.
| Package | Affected range | Fixed version |
|---|---|---|
| Linux/Linuxgeneric | >=c0efd232929c2cd87238de2cccdaf4e845be5b0c <95edf13a48e75dc2cc5b0bc57bf90d6948a22fe8 || >=c0efd232929c2cd87238de2cccdaf4e845be5b0c <684022f81f128338fe3587ec967459669a1204ae || >=c0efd232929c2cd87238de2cccdaf4e845be5b0c <faff5bbb2762c44ec7426037b3000e77a11d6773 || >=c0efd232929c2cd87238de2cccdaf4e845be5b0c <467d84dc78c9abf6b217ada22b3fdba336262e29 || >=c0efd232929c2cd87238de2cccdaf4e845be5b0c <beced2cb09b58c1243733f374c560a55382003d6 || >=c0efd232929c2cd87238de2cccdaf4e845be5b0c <575a562f7a3ec2d54ff77ab6810e3fbceef2a91d || >=c0efd232929c2cd87238de2cccdaf4e845be5b0c <622ad10aae5f5e03b7927ea95f7f32812f692bb5 || >=c0efd232929c2cd87238de2cccdaf4e845be5b0c <1ee9d9122801eb688783acd07791f2906b87cb4f || >=c0efd232929c2cd87238de2cccdaf4e845be5b0c <ecf2b43018da9579842c774b7f35dbe11b5c38dd | 95edf13a48e75dc2cc5b0bc57bf90d6948a22fe8, 684022f81f128338fe3587ec967459669a1204ae, faff5bbb2762c44ec7426037b3000e77a11d6773, 467d84dc78c9abf6b217ada22b3fdba336262e29, beced2cb09b58c1243733f374c560a55382003d6, 575a562f7a3ec2d54ff77ab6810e3fbceef2a91d, 622ad10aae5f5e03b7927ea95f7f32812f692bb5, 1ee9d9122801eb688783acd07791f2906b87cb4f, ecf2b43018da9579842c774b7f35dbe11b5c38dd |
| Linux/Linuxgeneric | 2.6.26 | Not reported |
Published upstream
Dec 2, 2024
Evidence: source:cvelist:source_dates:source-dates:recordSource modified
May 11, 2026
Evidence: source:cvelist:source_dates:source-dates:recordFirst seen by HOL
May 24, 2026
Added to CISA KEV
Feb 5, 2025
Evidence: source:kev:kev:kev:recordIn the Linux kernel, the following vulnerability has been resolved: media: uvcvideo: Skip parsing frames of type UVC_VS_UNDEFINED in uvc_parse_format This can lead to out of bounds writes since frames of this type were not taken into account when calculating the size of the frames buffer in uvc_parse_streaming.
Quoted source text, attributed separately from HOL analysis.