CVE-2024-41015
HIGH severity · CVSS 7.8
7.8CVSS HIGH
Summary
In the Linux kernel, the following vulnerability has been resolved: ocfs2: add bounds checking to ocfs2_check_dir_entry() This adds sanity checks for ocfs2_dir_entry to make sure all members of ocfs2_dir_entry don't stray beyond valid memory region.
Impact & exploitability
Attack vectorLocal
Attack complexityLow
Privileges requiredLow
User interactionNone
Confidentiality impactHigh
Integrity impactHigh
Availability impactHigh
Exploit probability (EPSS)0%
CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H
Affected products we track (1)
Recommendation
Apply the vendor fix promptly. Open any affected product above for its exact safe version.
Official patch: https://git.kernel.org/stable/c/13d38c00df97289e6fba2e54193959293fd910d2 ↗
Additional information
- NVD record
- https://git.kernel.org/stable/c/13d38c00df97289e6fba2e54193959293fd910d2Patch
- https://git.kernel.org/stable/c/255547c6bb8940a97eea94ef9d464ea5967763fbPatch
- https://git.kernel.org/stable/c/53de17ad01cb5f6f8426f597e9d5c87d4cf53bb7Patch
- https://git.kernel.org/stable/c/564d23cc5b216211e1694d53f7e45959396874d0Patch
- https://git.kernel.org/stable/c/624b380074f0dc209fb8706db3295c735079f34cPatch
- https://git.kernel.org/stable/c/77495e5da5cb110a8fed27b052c77853fe282176Patch
- https://git.kernel.org/stable/c/e05a24289db90f76ff606086aadd62d068a88dcdPatch
- https://git.kernel.org/stable/c/edb2e67dd4626b06fd7eb37252d5067912e78d59Patch