IT

Tracker / CVE-2024-41019

CVE-2024-41019

High 7.8

In the Linux kernel, the following vulnerability has been resolved: fs/ntfs3: Validate ff offset This adds sanity checks for ff offset. There is a check on rt->first_free at first, but walking through by ff without any check. If the second ff is a large offset. We may encounter an out-of-bound read.

Affected products and versions

linux linux_kernel · 5.15 → 5.15.164
linux linux_kernel · 5.16 → 6.1.102
linux linux_kernel · 6.10 → 6.10.2
linux linux_kernel · 6.2 → 6.6.43
linux linux_kernel · 6.7 → 6.9.12

Analysis

This page is not indexable yet.Until it carries original analysis — what it actually exposes, how to check in two minutes whether a system was touched, what to do if it was — the page stays noindex. The database decides that, not the template.

References