CVE-2024-50211
LOWLinux Kernel < 6.6.59 - Denial of Service via UDF inode_bmap Error Handling
Title source: llmDescription
In the Linux kernel, the following vulnerability has been resolved: udf: refactor inode_bmap() to handle error Refactor inode_bmap() to handle error since udf_next_aext() can return error now. On situations like ftruncate, udf_extend_file() can now detect errors and bail out early without resorting to checking for particular offsets and assuming internal behavior of these functions.
References (3)
Core 3
Scores
CVSS v3
3.3
EPSS
0.0020
EPSS Percentile
10.1%
Attack Vector
LOCAL
CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:N/I:N/A:L
CISA SSVC
Vulnrichment
Exploitation
none
Automatable
no
Technical Impact
partial
Details
Status
published
Products (12)
linux/Kernel
2.6.12 - 6.6.59linux
linux/Kernel
6.7.0 - 6.11.6linux
Linux/Linux
< 2.6.12
Linux/Linux
1da177e4c3f41524e886b7f1b8a0c1fc7321cac2 - 493447dd8336607fce426f7879e581095f6c606e
Linux/Linux
1da177e4c3f41524e886b7f1b8a0c1fc7321cac2 - b22d9a5698abf04341f8fbc30141e0673863c3a6
Linux/Linux
1da177e4c3f41524e886b7f1b8a0c1fc7321cac2 - c226964ec786f3797ed389a16392ce4357697d24
Linux/Linux
2.6.12
Linux/Linux
6.11.6 - 6.11.*
Linux/Linux
6.12
Linux/Linux
6.6.59 - 6.6.*
... and 2 more
Published
Nov 08, 2024
Tracked Since
Feb 18, 2026