PT-2024-34037 · Linux+7 · Linux Kernel+7
Lizhi Xu
·
Published
2024-11-07
·
Updated
2025-11-19
·
CVE-2024-50202
CVSS v3.1
5.5
Medium
| Vector | AV:L/AC:L/PR:L/UI:N/S:U/C:N/I:N/A:H |
Name of the Vulnerable Software and Affected Versions:
Linux kernel (affected versions not specified)
Description:
A task hang occurs in
vcs open() during a fuzzing test for nilfs2 due to an issue where nilfs find entry() ignores errors when loading a directory page/folio via nilfs get folio() fails. If the filesystem image is corrupted and the i size of the directory inode is large, and the directory page/folio is successfully read but fails the sanity check, nilfs check folio() may continue to spit out error messages in bursts. The issue is resolved by propagating the error to the callers when loading a page/folio fails in nilfs find entry().Recommendations:
At the moment, there is no information about a newer version that contains a fix for this vulnerability.
Exploit
Improper Handling of Exceptional Conditions
RCE
Found an issue in the description? Have something to add? Feel free to write us 👾
Related Identifiers
Affected Products
Alt Linux
Astra Linux
Debian
Linuxmint
Linux Kernel
Red Os
Suse
Ubuntu