PT-2024-36927 · Linux+7 · Linux Kernel+7

Syzbot

·

Published

2024-12-05

·

Updated

2025-10-03

·

CVE-2024-56619

CVSS v3.1

7.8

High

VectorAV:L/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H
Name of the Vulnerable Software and Affected Versions Linux kernel versions prior to 6.6.74
Description A potential out-of-bounds memory access issue in the nilfs find entry() function has been resolved. This issue occurs when searching for records in a directory with a corrupted inode size, potentially leading to memory access outside the folio/page range or detection of a use-after-free bug if KASAN is enabled. The problem is caused by the nilfs last byte() function losing the upper 32 bits of 64-bit size information due to an inappropriate type of local variable. This results in a large byte offset value and memory access that exceeds the folio/page size.
Recommendations To resolve this issue, update to Linux kernel version 6.6.74 or later. As a temporary workaround, consider restricting access to the nilfs find entry() function until a patch is available. Additionally, ensure that the nilfs last byte() function is properly truncated to not exceed PAGE SIZE to prevent bit loss.

Exploit

Fix

Use After Free

Found an issue in the description? Have something to add? Feel free to write us 👾

Weakness Enumeration

Related Identifiers

ALT-PU-2025-12647
BDU:2025-04999
CVE-2024-56619
DLA-4075-1
DLA-4076-1
MGASA-2025-0030
MGASA-2025-0032
OESA-2025-1033
OESA-2025-1035
OESA-2025-1037
OESA-2025-1067
OESA-2025-1078
OESA-2025-1079
OPENSUSE-SU-2025_0201-1
OPENSUSE-SU-2025_0203-1
OPENSUSE-SU-2025_0229-1
OPENSUSE-SU-2025_0428-1
OPENSUSE-SU-2025_0499-1
OPENSUSE-SU-2025_0557-1
SUSE-SU-2025:0152-1
SUSE-SU-2025:0201-1
SUSE-SU-2025:0201-2
SUSE-SU-2025:0203-1
SUSE-SU-2025:0229-1
SUSE-SU-2025:0231-1
SUSE-SU-2025:0289-1
SUSE-SU-2025:0428-1
SUSE-SU-2025:0499-1
SUSE-SU-2025:0557-1
SUSE-SU-2025:20165-1
SUSE-SU-2025:20166-1
SUSE-SU-2025:20248-1
SUSE-SU-2025:20249-1
SUSE-SU-2025_0201-1
SUSE-SU-2025_0201-2
SUSE-SU-2025_0203-1
SUSE-SU-2025_0428-1
SUSE-SU-2025_0499-1
SUSE-SU-2025_0557-1
USN-7379-1
USN-7379-2
USN-7380-1
USN-7381-1
USN-7382-1
USN-7387-1
USN-7387-2
USN-7387-3
USN-7388-1
USN-7389-1
USN-7390-1
USN-7391-1
USN-7392-1
USN-7392-2
USN-7392-3
USN-7392-4
USN-7393-1
USN-7401-1
USN-7407-1
USN-7413-1
USN-7421-1
USN-7449-1
USN-7449-2
USN-7450-1
USN-7451-1
USN-7452-1
USN-7453-1
USN-7458-1
USN-7459-1
USN-7459-2
USN-7463-1
USN-7468-1
USN-7523-1
USN-7524-1
USN-7539-1
USN-7540-1

Affected Products

Alt Linux
Astra Linux
Debian
Linuxmint
Linux Kernel
Red Os
Suse
Ubuntu