CVE-2024-42273: f2fs: assign CURSEG_ALL_DATA_ATGC if blkaddr is valid
Published Aug 17, 2024
·Updated
f2fs: assign CURSEGALLDATAATGC if blkaddr is valid
Affected Software
6 affected componentsFixes available
debian/linux
5.10.223-15.10.234-16.1.129-16.1.135-16.12.25-16.12.27-1
debian/linux-6.1
6.1.129-1~deb11u1
Linux Linux kernel>=5.15.149<5.16
Linux Linux kernel>=6.1.77<6.1.104
Linux Linux kernel>=6.6.16<6.6.45
Linux Linux kernel>=6.7.4<6.10.4
Remediation
Recommended actions to resolve this vulnerability, in priority order.
- Upgrade
Upgrade
debian/linuxto a version that resolves this vulnerability.Fixed in 5.10.223-1Fixed in 5.10.234-1Fixed in 6.1.129-1Fixed in 6.1.135-1Fixed in 6.12.25-1Fixed in 6.12.27-1 - Upgrade
Upgrade
debian/linux-6.1to a version that resolves this vulnerability.Fixed in 6.1.129-1~deb11u1
Event History
Aug 17, 2024
CVE Published
via MITRE·08:54 AM
Data Sourced
via MITRE·08:54 AM
DescriptionSeverity
Data Sourced
via NVD·09:15 AM
Description
Data Sourced
via NVD·09:15 AM
RemedySeverityAffected Software
May 1, 2025
Data Sourced
via Ubuntu·07:38 PM
RemedyDescriptionSeverityAffected Software
Oct 4, 2025
Data Sourced
via Microsoft·01:01 AM
DescriptionSeverityWeakness
Jan 4, 58561
Event
via MITRE·12:15 AM
Frequently Asked Questions
1
What is the severity of CVE-2024-42273?
The severity of CVE-2024-42273 is classified as medium.
2
How do I fix CVE-2024-42273?
To fix CVE-2024-42273, upgrade to the patched versions of the Linux kernel, such as 5.10.223-1, 6.1.123-1, or 6.12.12-1.
3
What versions of Linux are affected by CVE-2024-42273?
CVE-2024-42273 affects various versions of the Linux kernel including 5.10, 6.1, and 6.12 before specific patched releases.
4
Is CVE-2024-42273 a local or remote attack vulnerability?
CVE-2024-42273 is primarily a local attack vulnerability.
5
What component of the Linux kernel is affected by CVE-2024-42273?
The f2fs file system component of the Linux kernel is affected by CVE-2024-42273.