PT-2024-26797 · Linux · Linux Kernel

Published

2024-04-20

·

Updated

2026-04-20

·

CVE-2024-35948

CVSS v3.1

8.4

High

VectorAV:L/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H
Name of the Vulnerable Software and Affected Versions Linux kernel (affected versions not specified)
Description The issue is related to a missing bounds check in superblock validation in the bcachefs component of the Linux kernel. This could potentially allow journal entries to overrun the end of the sb clean section. The whole superblock is checksummed, validated prior to write, and there are backups, which reduces the priority of implementing repair code for individual items.
Recommendations At the moment, there is no information about a newer version that contains a fix for this vulnerability.

Exploit

Resource Exhaustion

RCE

Weakness Enumeration

Related Identifiers

BDU:2025-07415
CVE-2024-35948

Affected Products

Linux Kernel