PT-2024-26801 · Linux+6 · Linux Kernel+6

Published

2024-03-21

·

Updated

2026-05-26

·

CVE-2024-35956

CVSS v3.1

5.5

Medium

VectorAV:L/AC:L/PR:L/UI:N/S:U/C:N/I:N/A:H
Name of the Vulnerable Software and Affected Versions Linux kernel (affected versions not specified)
Description A vulnerability in the Linux kernel has been resolved, related to the btrfs file system. The issue occurs when quota groups are enabled, and the error paths of certain operations do not correctly implement the lifecycle of qgroup metadata reservations. This can lead to a leak of qgroup metadata, resulting in a warning in CONFIG BTRFS DEBUG builds at unmount. The fix ensures that every qgroup PREALLOC reservation observes specific properties, including freeing the reservation on failure before a certain point and converting to PERTRANS after that point.
Recommendations At the moment, there is no information about a newer version that contains a fix for this vulnerability.

Exploit

DoS

Memory Leak

Weakness Enumeration

Related Identifiers

AZL-67700
BDU:2025-08083
CVE-2024-35956
DLA-4076-1
OESA-2024-1693
OESA-2024-1694
OPENSUSE-SU-2024_2372-1
OPENSUSE-SU-2024_2394-1
SUSE-SU-2024:2135-1
SUSE-SU-2024:2203-1
SUSE-SU-2024:2360-1
SUSE-SU-2024:2372-1
SUSE-SU-2024:2381-1
SUSE-SU-2024:2394-1
SUSE-SU-2024:2561-1
SUSE-SU-2024:2939-1
SUSE-SU-2024:2973-1
SUSE-SU-2025:20008-1
USN-6893-1
USN-6893-2
USN-6893-3
USN-6918-1

Affected Products

Astra Linux
Debian
Linuxmint
Linux Kernel
Red Os
Suse
Ubuntu