CVE-2024-41015

MEDIUM EPSS 14.9%
Published Jul 29, 20241y ago · Modified Jun 17, 20261w ago
5.5 CVSS 3.1
Medium
Find Similar
Published Jul 29, 2024 1y ago
Last Modified Jun 17, 2026 1w ago

Description

In the Linux kernel, the following vulnerability has been resolved: ocfs2: add bounds checking to ocfs2_check_dir_entry() This adds sanity checks for ocfs2_dir_entry to make sure all members of ocfs2_dir_entry don't stray beyond valid memory region.

CVSS Details

Base Score
5.5
Exploitability
1.8
Impact
3.6
Vector string
CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:N/I:N/A:H
Attack Vector Local
Attack Complexity Low
Privileges Required Low
User Interaction None
Scope Unchanged
Confidentiality None
Integrity None
Availability High

Threat Intelligence

EPSS Exploit Probability
14.9% percentile
Exploit & Patch Status
No Known Exploit
Patch Available

Affected Products 8

VendorProductVersionRange
linuxlinux_kernel* <4.19.319
linuxlinux_kernel*≥4.20  –  <5.4.281
linuxlinux_kernel*≥5.5  –  <5.10.223
linuxlinux_kernel*≥5.11  –  <5.15.164
linuxlinux_kernel*≥5.16  –  <6.1.102
linuxlinux_kernel*≥6.2  –  <6.6.43
linuxlinux_kernel*≥6.7  –  <6.9.12
linuxlinux_kernel*≥6.10  –  <6.10.2

References 10

  • git.kernel.org https://git.kernel.org/stable/c/13d38c00df97289e6fba2e54193959293fd910d2
    Patch
  • git.kernel.org https://git.kernel.org/stable/c/255547c6bb8940a97eea94ef9d464ea5967763fb
    Patch
  • git.kernel.org https://git.kernel.org/stable/c/53de17ad01cb5f6f8426f597e9d5c87d4cf53bb7
    Patch
  • git.kernel.org https://git.kernel.org/stable/c/564d23cc5b216211e1694d53f7e45959396874d0
    Patch
  • git.kernel.org https://git.kernel.org/stable/c/624b380074f0dc209fb8706db3295c735079f34c
    Patch
  • git.kernel.org https://git.kernel.org/stable/c/77495e5da5cb110a8fed27b052c77853fe282176
    Patch
  • git.kernel.org https://git.kernel.org/stable/c/e05a24289db90f76ff606086aadd62d068a88dcd
    Patch
  • git.kernel.org https://git.kernel.org/stable/c/edb2e67dd4626b06fd7eb37252d5067912e78d59
    Patch
  • git.kernel.org https://git.kernel.org/stable/c/fd65685594ee707cbf3ddf22ebb73697786ac114
    Patch
  • lists.debian.org https://lists.debian.org/debian-lts-announce/2025/01/msg00001.html

Remediation

  • git.kernel.org https://git.kernel.org/stable/c/13d38c00df97289e6fba2e54193959293fd910d2
    Patch
  • git.kernel.org https://git.kernel.org/stable/c/255547c6bb8940a97eea94ef9d464ea5967763fb
    Patch
  • git.kernel.org https://git.kernel.org/stable/c/53de17ad01cb5f6f8426f597e9d5c87d4cf53bb7
    Patch
  • git.kernel.org https://git.kernel.org/stable/c/564d23cc5b216211e1694d53f7e45959396874d0
    Patch
  • git.kernel.org https://git.kernel.org/stable/c/624b380074f0dc209fb8706db3295c735079f34c
    Patch
  • git.kernel.org https://git.kernel.org/stable/c/77495e5da5cb110a8fed27b052c77853fe282176
    Patch
  • git.kernel.org https://git.kernel.org/stable/c/e05a24289db90f76ff606086aadd62d068a88dcd
    Patch
  • git.kernel.org https://git.kernel.org/stable/c/edb2e67dd4626b06fd7eb37252d5067912e78d59
    Patch
  • git.kernel.org https://git.kernel.org/stable/c/fd65685594ee707cbf3ddf22ebb73697786ac114
    Patch