-

CVE-2024-35936

In the Linux kernel, the following vulnerability has been resolved:

btrfs: handle chunk tree lookup error in btrfs_relocate_sys_chunks()

The unhandled case in btrfs_relocate_sys_chunks() loop is a corruption,
as it could be caused only by two impossible conditions:

- at first the search key is set up to look for a chunk tree item, with
  offset -1, this is an inexact search and the key->offset will contain
  the correct offset upon a successful search, a valid chunk tree item
  cannot have an offset -1

- after first successful search, the found_key corresponds to a chunk
  item, the offset is decremented by 1 before the next loop, it's
  impossible to find a chunk item there due to alignment and size
  constraints

Verknüpft mit AI von unstrukturierten Daten zu bestehenden CPE der NVD
This information is available to logged-in users.
Daten sind bereitgestellt durch das CVE Programm von einer CVE Numbering Authority (CNA) (Unstrukturiert).
VendorLinux
Product Linux
Default Statusunaffected
Version < bebd9e0ff90034875c5dfe4bd514fd7055fc7a89
Version 1da177e4c3f41524e886b7f1b8a0c1fc7321cac2
Status affected
Version < 576164bd01bd795f8b09fb194b493103506b33c9
Version 1da177e4c3f41524e886b7f1b8a0c1fc7321cac2
Status affected
Version < 87299cdaae757f3f41212146cfb5b3af416b8385
Version 1da177e4c3f41524e886b7f1b8a0c1fc7321cac2
Status affected
Version < d1ffa4ae2d591fdd40471074e79954ec45f147f7
Version 1da177e4c3f41524e886b7f1b8a0c1fc7321cac2
Status affected
Version < 36c2a2863bc3896243eb724dc3fd4cf9aea633f2
Version 1da177e4c3f41524e886b7f1b8a0c1fc7321cac2
Status affected
Version < 0d23b34c68c46cd225b55868bc8a269e3134816d
Version 1da177e4c3f41524e886b7f1b8a0c1fc7321cac2
Status affected
Version < 1f9212cdbd005bc55f2b7422e7b560d9c02bd1da
Version 1da177e4c3f41524e886b7f1b8a0c1fc7321cac2
Status affected
Version < 7411055db5ce64f836aaffd422396af0075fdc99
Version 1da177e4c3f41524e886b7f1b8a0c1fc7321cac2
Status affected
VendorLinux
Product Linux
Default Statusaffected
Version <= 4.19.*
Version 4.19.312
Status unaffected
Version <= 5.4.*
Version 5.4.274
Status unaffected
Version <= 5.10.*
Version 5.10.215
Status unaffected
Version <= 5.15.*
Version 5.15.155
Status unaffected
Version <= 6.1.*
Version 6.1.86
Status unaffected
Version <= 6.6.*
Version 6.6.27
Status unaffected
Version <= 6.8.*
Version 6.8.6
Status unaffected
Version <= *
Version 6.9
Status unaffected
Zu dieser CVE wurde keine CISA KEV oder CERT.AT-Warnung gefunden.
EPSS Metriken
Type Source Score Percentile
EPSS FIRST.org 0.09% 0.258
CVSS Metriken
Source Base Score Exploit Score Impact Score Vector string