CVE-2024-49859

MEDIUM EPSS 5.3%
Published Oct 21, 20241y ago · Modified Jun 17, 20261w ago
4.7 CVSS 3.1
Medium
Find Similar
Published Oct 21, 2024 1y ago
Last Modified Jun 17, 2026 1w ago

Description

In the Linux kernel, the following vulnerability has been resolved: f2fs: fix to check atomic_file in f2fs ioctl interfaces Some f2fs ioctl interfaces like f2fs_ioc_set_pin_file(), f2fs_move_file_range(), and f2fs_defragment_range() missed to check atomic_write status, which may cause potential race issue, fix it.

CVSS Details

Base Score
4.7
Exploitability
1.0
Impact
3.6
Vector string
CVSS:3.1/AV:L/AC:H/PR:L/UI:N/S:U/C:N/I:N/A:H
Attack Vector Local
Attack Complexity High
Privileges Required Low
User Interaction None
Scope Unchanged
Confidentiality None
Integrity None
Availability High

Threat Intelligence

EPSS Exploit Probability
5.3% percentile
Exploit & Patch Status
No Known Exploit
Patch Available

Weaknesses 1

CWE-362

Affected Products 4

VendorProductVersionRange
linuxlinux_kernel* <6.1.113
linuxlinux_kernel*≥6.2  –  <6.6.54
linuxlinux_kernel*≥6.7  –  <6.10.13
linuxlinux_kernel*≥6.11  –  <6.11.2

References 6

  • git.kernel.org https://git.kernel.org/stable/c/10569b682ebe9c75ef06ddd322ae844e9be6374b
    Patch
  • git.kernel.org https://git.kernel.org/stable/c/26b07bd2e1f124b0e430c8d250023f7205c549c3
    Patch
  • git.kernel.org https://git.kernel.org/stable/c/7cb51731f24b216b0b87942f519f2c67a17107ee
    Patch
  • git.kernel.org https://git.kernel.org/stable/c/bfe5c02654261bfb8bd9cb174a67f3279ea99e58
    Patch
  • git.kernel.org https://git.kernel.org/stable/c/d6f08c88047accc6127dddb6798a3ff11321539d
    Patch
  • lists.debian.org https://lists.debian.org/debian-lts-announce/2025/01/msg00001.html

Remediation

  • git.kernel.org https://git.kernel.org/stable/c/10569b682ebe9c75ef06ddd322ae844e9be6374b
    Patch
  • git.kernel.org https://git.kernel.org/stable/c/26b07bd2e1f124b0e430c8d250023f7205c549c3
    Patch
  • git.kernel.org https://git.kernel.org/stable/c/7cb51731f24b216b0b87942f519f2c67a17107ee
    Patch
  • git.kernel.org https://git.kernel.org/stable/c/bfe5c02654261bfb8bd9cb174a67f3279ea99e58
    Patch
  • git.kernel.org https://git.kernel.org/stable/c/d6f08c88047accc6127dddb6798a3ff11321539d
    Patch