In the Linux kernel, the following vulnerability has been resolved:
nilfs2: protect references to superblock parameters exposed in sysfs
The superblock buffers of nilfs2 can not only be overwritten at runtime
for modifications/repairs, but they are also regularly swapped, replaced
during resizing, and even abandoned when degrading to one side due to
backing device issues. So, accessing them requires mutual exclusion using
the reader/writer semaphore "nilfs->ns_sem".
Some sysfs attribute show methods read this superblock buffer without the
necessary mutual exclusion, which can cause problems with pointer
dereferencing and memory access, so fix it.
References
Configurations
Configuration 1 (hide)
|
History
20 Nov 2024, 17:31
Type | Values Removed | Values Added |
---|---|---|
CVSS |
v2 : v3 : |
v2 : unknown
v3 : 5.5 |
CWE | NVD-CWE-noinfo | |
First Time |
Linux linux Kernel
Linux |
|
References | () https://git.kernel.org/stable/c/157c0d94b4c40887329418c70ef4edd1a8d6b4ed - Patch | |
References | () https://git.kernel.org/stable/c/19cfeba0e4b8eda51484fcf8cf7d150418e1d880 - Patch | |
References | () https://git.kernel.org/stable/c/683408258917541bdb294cd717c210a04381931e - Patch | |
References | () https://git.kernel.org/stable/c/8c6e43b3d5f109cf9c61bc188fcc8175404e924f - Patch | |
References | () https://git.kernel.org/stable/c/962562d4c70c5cdeb4e955d63ff2017c4eca1aad - Patch | |
References | () https://git.kernel.org/stable/c/b14e7260bb691d7f563f61da07d61e3c8b59a614 - Patch | |
References | () https://git.kernel.org/stable/c/b90beafac05931cbfcb6b1bd4f67c1923f47040e - Patch | |
References | () https://git.kernel.org/stable/c/ba97ba173f9625d5f34a986088979eae8b80d38e - Patch | |
CPE | cpe:2.3:o:linux:linux_kernel:6.11:rc6:*:*:*:*:*:* cpe:2.3:o:linux:linux_kernel:6.11:rc3:*:*:*:*:*:* cpe:2.3:o:linux:linux_kernel:*:*:*:*:*:*:*:* cpe:2.3:o:linux:linux_kernel:6.11:rc5:*:*:*:*:*:* cpe:2.3:o:linux:linux_kernel:6.11:rc1:*:*:*:*:*:* cpe:2.3:o:linux:linux_kernel:6.11:rc4:*:*:*:*:*:* cpe:2.3:o:linux:linux_kernel:6.11:rc2:*:*:*:*:*:* |
20 Sep 2024, 12:30
Type | Values Removed | Values Added |
---|---|---|
Summary |
|
18 Sep 2024, 08:15
Type | Values Removed | Values Added |
---|---|---|
New CVE |
Information
Published : 2024-09-18 08:15
Updated : 2024-11-20 17:31
NVD link : CVE-2024-46780
Mitre link : CVE-2024-46780
CVE.ORG link : CVE-2024-46780
JSON object : View
Products Affected
linux
- linux_kernel
CWE