PT-2024-25507 · Linux+4 · Linux Kernel+4

Published

2024-05-10

·

Updated

2025-01-13

·

CVE-2024-33847

CVSS v3.1

5.5

Medium

VectorAV:L/AC:L/PR:L/UI:N/S:U/C:N/I:N/A:H
Name of the Vulnerable Software and Affected Versions Linux kernel (affected versions not specified)
Description The issue is related to the f2fs filesystem in the Linux kernel, where partial truncation of a compressed inode can lead to corruption of the f2fs image. This occurs because the valid block count may change without updating i blocks and total valid block count, resulting in corruption. The problem can be triggered by a specific testcase involving the creation of an f2fs filesystem with compression, setting flags, and performing truncation operations.
Recommendations At the moment, there is no information about a newer version that contains a fix for this vulnerability.

Exploit

Found an issue in the description? Have something to add? Feel free to write us 👾

Weakness Enumeration

Related Identifiers

BDU:2025-03921
CVE-2024-33847
DSA-5730-1
MGASA-2024-0263
MGASA-2024-0266
OESA-2024-2076
USN-6999-1
USN-6999-2
USN-7004-1
USN-7005-1
USN-7005-2
USN-7007-1
USN-7007-2
USN-7007-3
USN-7008-1
USN-7009-1
USN-7009-2
USN-7019-1
USN-7029-1

Affected Products

Astra Linux
Linuxmint
Linux Kernel
Red Os
Ubuntu