CVE-2024-43859: f2fs: fix to truncate preallocated blocks in f2fs_file_open()
Published Aug 17, 2024
·Updated
f2fs: fix to truncate preallocated blocks in f2fsfileopen()
Affected Software
6 affected componentsFixes available
Linux Linux kernel>=5.17<6.6.44
Linux Linux kernel>=6.7<6.10.3
debian/linux
5.10.223-15.10.234-16.1.129-16.1.135-16.12.25-16.12.27-1
debian/linux-6.1
6.1.129-1~deb11u1
Microsoft azl3 kernel 6.6.43.1-7
Microsoft azl3 kernel 6.6.47.1-1
Remediation
Event History
Aug 17, 2024
CVE Published
via MITRE·09:24 AM
Data Sourced
via MITRE·09:24 AM
Description
Data Sourced
via NVD·10:15 AM
RemedyDescriptionSeverityWeaknessAffected Software
Sep 11, 2024
Data Sourced
via Microsoft·07:00 AM
DescriptionSeverityWeakness
Data Sourced
via Microsoft·07:00 AM
Affected Software
Updated
via Microsoft·07:00 AM
SeverityAffected Software
Updated
via Microsoft·07:00 AM
DescriptionSeverity
Jan 9, 2025
Data Sourced
via Ubuntu·06:28 PM
RemedyDescriptionSeverityAffected Software
Frequently Asked Questions
1
What is the severity of CVE-2024-43859?
CVE-2024-43859 has a moderate severity due to potential kernel NULL pointer dereference issues leading to a denial of service.
2
How do I fix CVE-2024-43859?
To fix CVE-2024-43859, update to the patched versions of the Linux kernel specified in the security advisory.
3
Which Linux kernel versions are affected by CVE-2024-43859?
CVE-2024-43859 affects Linux kernel versions between 5.17 and 6.6.44, as well as between 6.7 and 6.10.3.
4
What type of vulnerability is CVE-2024-43859?
CVE-2024-43859 is a vulnerability related to the f2fs filesystem that can lead to a kernel crash.
5
Who reported the bug for CVE-2024-43859?
The bug leading to CVE-2024-43859 was reported by the researcher chenyuwen.