PT-2024-34047 · Linux+5 · Linux Kernel+5
Published
2024-10-02
·
Updated
2026-05-26
·
CVE-2024-50211
CVSS v3.1
3.3
Low
| Vector | AV:L/AC:L/PR:L/UI:N/S:U/C:N/I:N/A:L |
Name of the Vulnerable Software and Affected Versions:
Linux kernel versions prior to 6.6.61
Description:
A flaw in the Linux kernel has been fixed, related to improved error handling in the
udf extend file function. The inode bmap() function was refactored to handle errors since udf next aext() can return an error. This change allows the kernel to detect errors and bail out early in situations like ftruncate, without relying on internal behavior of these functions.Recommendations:
For Linux kernel versions prior to 6.6.61, update to version 6.6.61 or later to resolve the issue. As a temporary workaround, consider restricting the use of the
udf extend file function until a patch is available.Exploit
Fix
Unchecked Return Value
Found an issue in the description? Have something to add? Feel free to write us 👾
Weakness Enumeration
Related Identifiers
Affected Products
Alt Linux
Debian
Linuxmint
Linux Kernel
Suse
Ubuntu