5.5

CVE-2024-41018

fs/ntfs3: Add a check for attr_names and oatbl

In the Linux kernel, the following vulnerability has been resolved:

fs/ntfs3: Add a check for attr_names and oatbl

Added out-of-bound checking for *ane (ATTR_NAME_ENTRY).
Daten sind bereitgestellt durch National Vulnerability Database (NVD)
Linux ≫ Linux Kernel Version >= 6.6.19 < 6.6.43
Linux ≫ Linux Kernel Version >= 6.7.7 < 6.8
Linux ≫ Linux Kernel Version >= 6.8.1 < 6.9.12
Linux ≫ Linux Kernel Version >= 6.10 < 6.10.2
Linux ≫ Linux Kernel Version 6.8 Update -
Linux ≫ Linux Kernel Version 6.8 Update rc4
Linux ≫ Linux Kernel Version 6.8 Update rc5
Linux ≫ Linux Kernel Version 6.8 Update rc6
Linux ≫ Linux Kernel Version 6.8 Update rc7
VulnDex Vulnerability Enrichment
Diese Information steht angemeldeten Benutzern zur Verfügung. Login Login
Zu dieser CVE wurde keine Warnung gefunden.
EPSS Metriken
Typ Quelle Score Percentile
EPSS FIRST.org 0.23% 0.138
CVSS Metriken
Quelle Base Score Exploit Score Impact Score Vector String
NIST 5.5 1.8 3.6
CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:N/I:N/A:H
416baaa9-dc9f-4396-8d5f-8c081fb06d67 7.8 1.8 5.9
CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H
Es wurden noch keine Informationen zu CWE veröffentlicht.
https://git.kernel.org/stable/c/702d4930eb06dcfda85a2fa67e8a1a27bfa2a845
Patch
https://git.kernel.org/stable/c/9b71f820f7168f1eab8378c80c7ea8a022a475bc
Patch
https://git.kernel.org/stable/c/c114d2b88f8b226d4b2acf5a1ba0412cde6c31dd
Patch
https://git.kernel.org/stable/c/f3124d51e4e7b56a732419d8dc270e807252334f
Patch