PT-2024-26798 · Linux+4 · Linux Kernel+4

Lei Lu

·

Published

2024-04-09

·

Updated

2026-05-26

·

CVE-2024-35949

CVSS v3.1

7.8

High

VectorAV:L/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H
Name of the Vulnerable Software and Affected Versions Linux kernel versions prior to 6.8.9
Description The issue is related to the btrfs file system in the Linux kernel. It was discovered that the kernel did not properly set the WRITTEN flag on all metadata blocks, which could lead to corruption on disk and out-of-bounds access. This was reported by KASAN as a wild-memory-access. The vulnerability was hit on a crafted image tweaking the WRITTEN bit.
Recommendations To resolve the issue, upgrade the Linux kernel to version 6.8.9 or later. This will ensure that the WRITTEN flag is properly set on all metadata blocks, preventing potential corruption and out-of-bounds access.

Exploit

Fix

Memory Corruption

Out of bounds Read

Found an issue in the description? Have something to add? Feel free to write us 👾

Weakness Enumeration

Related Identifiers

AZL-73004
BDU:2025-11444
BDU:2026-06104
CVE-2024-35949
ECHO-4EF0-AF91-C937
OESA-2024-2325
OPENSUSE-SU-2024_2947-1
OPENSUSE-SU-2024_4120-1
OPENSUSE-SU-2024_4122-1
OPENSUSE-SU-2024_4123-1
OPENSUSE-SU-2024_4124-1
OPENSUSE-SU-2024_4125-1
OPENSUSE-SU-2024_4127-1
OPENSUSE-SU-2024_4128-1
OPENSUSE-SU-2024_4141-1
OPENSUSE-SU-2024_4206-1
OPENSUSE-SU-2024_4207-1
OPENSUSE-SU-2024_4208-1
OPENSUSE-SU-2024_4209-1
OPENSUSE-SU-2024_4210-1
OPENSUSE-SU-2024_4214-1
OPENSUSE-SU-2024_4216-1
OPENSUSE-SU-2024_4217-1
OPENSUSE-SU-2024_4218-1
OPENSUSE-SU-2024_4220-1
OPENSUSE-SU-2024_4227-1
OPENSUSE-SU-2024_4228-1
OPENSUSE-SU-2024_4243-1
OPENSUSE-SU-2025_0114-1
OPENSUSE-SU-2025_0115-1
OPENSUSE-SU-2025_0138-1
OPENSUSE-SU-2025_0146-1
OPENSUSE-SU-2025_0158-1
OPENSUSE-SU-2025_0164-1
OPENSUSE-SU-2025_0168-1
OPENSUSE-SU-2025_0187-1
OPENSUSE-SU-2025_0188-1
OPENSUSE-SU-2025_0252-1
OPENSUSE-SU-2025_0253-1
OPENSUSE-SU-2025_0254-1
OPENSUSE-SU-2025_0255-1
OPENSUSE-SU-2025_0260-1
OPENSUSE-SU-2025_0262-1
OPENSUSE-SU-2025_0265-1
OPENSUSE-SU-2025_0266-1
OPENSUSE-SU-2025_0835-1
OPENSUSE-SU-2025_0855-1
SUSE-SU-2024:2892-1
SUSE-SU-2024:2894-1
SUSE-SU-2024:2901-1
SUSE-SU-2024:2939-1
SUSE-SU-2024:2940-1
SUSE-SU-2024:2947-1
SUSE-SU-2024:3194-1
SUSE-SU-2024:3195-1
SUSE-SU-2024:3383-1
SUSE-SU-2024:4120-1
SUSE-SU-2024:4122-1
SUSE-SU-2024:4123-1
SUSE-SU-2024:4124-1
SUSE-SU-2024:4125-1
SUSE-SU-2024:4127-1
SUSE-SU-2024:4128-1
SUSE-SU-2024:4129-1
SUSE-SU-2024:4139-1
SUSE-SU-2024:4141-1
SUSE-SU-2024:4170-1
SUSE-SU-2024:4195-1
SUSE-SU-2024:4197-1
SUSE-SU-2024:4206-1
SUSE-SU-2024:4207-1
SUSE-SU-2024:4208-1
SUSE-SU-2024:4209-1
SUSE-SU-2024:4210-1
SUSE-SU-2024:4214-1
SUSE-SU-2024:4216-1
SUSE-SU-2024:4217-1
SUSE-SU-2024:4218-1
SUSE-SU-2024:4219-1
SUSE-SU-2024:4220-1
SUSE-SU-2024:4226-1
SUSE-SU-2024:4227-1
SUSE-SU-2024:4228-1
SUSE-SU-2024:4239-1
SUSE-SU-2024:4243-1
SUSE-SU-2024:4249-1
SUSE-SU-2024:4261-1
SUSE-SU-2025:0084-1
SUSE-SU-2025:0089-1
SUSE-SU-2025:0091-1
SUSE-SU-2025:0097-1
SUSE-SU-2025:0103-1
SUSE-SU-2025:0114-1
SUSE-SU-2025:0115-1
SUSE-SU-2025:0138-1
SUSE-SU-2025:0146-1
SUSE-SU-2025:0158-1
SUSE-SU-2025:0164-1
SUSE-SU-2025:0168-1
SUSE-SU-2025:0187-1
SUSE-SU-2025:0188-1
SUSE-SU-2025:0252-1
SUSE-SU-2025:0253-1
SUSE-SU-2025:0254-1
SUSE-SU-2025:0255-1
SUSE-SU-2025:0260-1
SUSE-SU-2025:0262-1
SUSE-SU-2025:0265-1
SUSE-SU-2025:0266-1
SUSE-SU-2025:0269-1
SUSE-SU-2025:0835-1
SUSE-SU-2025:0855-1
SUSE-SU-2025:0867-1
SUSE-SU-2025:0945-1
SUSE-SU-2025:20044-1
SUSE-SU-2025:20047-1
SUSE-SU-2025_0835-1
SUSE-SU-2025_0855-1
USN-6949-1
USN-6949-2
USN-6952-1
USN-6952-2
USN-6955-1

Affected Products

Debian
Linuxmint
Linux Kernel
Suse
Ubuntu