7.1
CVSSv3

CVE-2024-47757

CVSSv4: NA | CVSSv3: 7.1 | CVSSv2: NA | VMScore: 810 | EPSS: 0.00036 | KEV: Not Included
Published: 21/10/2024 Updated: 08/11/2024

Vulnerability Summary

Out-of-Bounds Read Vulnerability Fixed in Linux Kernel's nilfs2

A vulnerability was fixed in the Linux kernel for nilfs2. The problem was with the function nilfs_btree_check_delete(). This function checks if a b-tree entry can be deleted. It could access memory outside the block buffer when getting the maximum key if the root node had no entries. This usually doesn't happen because mkfs.nilfs2 and nilfs2 don't make b-tree mappings with 0 child nodes. But, if a b-tree root node is read from a device like that, it could cause an issue. So, a check was added to prevent this.

Vulnerable Product Search on Vulmon Subscribe to Product

linux linux

linux linux kernel

Vendor Advisories

In the Linux kernel, the following vulnerability has been resolved: ext4: avoid OOB when systemdata xattr changes underneath the filesystem (CVE-2024-47701) In the Linux kernel, the following vulnerability has been resolved: firmware_loader: Block path traversal (CVE-2024-47742) In the Linux kernel, the following vulnerability has been resolved: n ...
In the Linux kernel, the following vulnerability has been resolved: nilfs2: fix potential oob read in nilfs_btree_check_delete() (CVE-2024-47757) In the Linux kernel, the following vulnerability has been resolved: ext4: fix double brelse() the buffer of the extents path (CVE-2024-49882) In the Linux kernel, the following vulnerability has been reso ...
In the Linux kernel, the following vulnerability has been resolved: nilfs2: fix potential oob read in nilfs_btree_check_delete() (CVE-2024-47757) In the Linux kernel, the following vulnerability has been resolved: ext4: fix double brelse() the buffer of the extents path (CVE-2024-49882) In the Linux kernel, the following vulnerability has been reso ...
In the Linux kernel, the following vulnerability has been resolved: nilfs2: fix potential oob read in nilfs_btree_check_delete() (CVE-2024-47757) In the Linux kernel, the following vulnerability has been resolved: ext4: fix double brelse() the buffer of the extents path (CVE-2024-49882) In the Linux kernel, the following vulnerability has been reso ...
In the Linux kernel, the following vulnerability has been resolved: nilfs2: fix potential oob read in nilfs_btree_check_delete() (CVE-2024-47757) In the Linux kernel, the following vulnerability has been resolved: ext4: fix double brelse() the buffer of the extents path (CVE-2024-49882) In the Linux kernel, the following vulnerability has been reso ...
In the Linux kernel, the following vulnerability has been resolved: nilfs2: fix potential oob read in nilfs_btree_check_delete() (CVE-2024-47757) In the Linux kernel, the following vulnerability has been resolved: ext4: fix double brelse() the buffer of the extents path (CVE-2024-49882) In the Linux kernel, the following vulnerability has been reso ...