CVE-2024-58015 affects the Linux kernel's ath12k Wi-Fi driver, where debugfs handling of self-generated HTTP statistics passed an oversized array-length value to print_array_to_buf_index(). The off-by-one buffer bound can trigger an out-of-bounds memory read, potentially exposing local information or affecting system availability. The defect was identified through Coverity findings CID 1600742 and CID 1600758.
The upstream fix reduces the buffer size by one and is available in Linux kernel 6.13.3 and 6.14-rc1; the Linux kernel CVE team recommends updating to a current stable release rather than selectively applying the patch. Red Hat rated the issue Moderate with CVSS 6.0, while NVD assigned 7.1. Red Hat issued fixes for RHEL 9 and RHEL 10 through RHSA-2025:20518 and RHSA-2025:20095; RHEL 9 kernel-rt is marked will not fix, and RHEL 6, 7, 8 and their listed real-time kernel variants are not affected.

See affected versions and whether adversaries are exploiting it.
3 events from the most recent confirmed update back to the earliest known activity.
Red Hat released RHSA-2025:20095 for Red Hat Enterprise Linux 10 and RHSA-2025:20518 for RHEL 9, addressing CVE-2024-58015. RHEL 9 kernel-rt was designated will not fix, while RHEL 6, 7, 7 kernel-rt, 8, and 8 kernel-rt were listed as unaffected.
Red Hat published its record for CVE-2024-58015, an out-of-bounds read in the Linux kernel ath12k Wi-Fi driver's debugfs HTTP-statistics handling. The flaw was identified by Coverity findings CID 1600742 and CID 1600758 and is corrected by reducing the buffer-size bound by one.
CVE-2024-58015 was fixed in Linux kernel versions 6.13.3 and 6.14-rc1. The Linux kernel CVE team recommended updating to a current stable kernel release rather than cherry-picking the individual fix.
Vulnerabilities, threat actors, malware, products, organizations, and breaches Mallory has linked to this story.
See whether adversaries are exploiting this yet, and where the affected versions run in your environment.
3 references tracked. Mallory keeps watching after this page renders.
bugzilla.redhat.com
Open sourceredhat.com
Open sourcelore.kernel.org
Open sourceMap indicators from this story to your assets and identify affected systems in minutes.
Every observed campaign, victim, and pivot linked to actors named in this story.
Malware, exploits, and IOCs connected to the activity described here.
YARA, Sigma, and Snort rules deployed to your SIEM as soon as they’re published.
Get matching new stories delivered to your team as they break — not the next morning.
Ask questions about this story and take action on the answers.