CVE-2024-26601

Severity CVSS v4.0:
Pending analysis
Type:
Unavailable / Other
Publication date:
26/02/2024
Last modified:
05/11/2024

Description

In the Linux kernel, the following vulnerability has been resolved:<br /> <br /> ext4: regenerate buddy after block freeing failed if under fc replay<br /> <br /> This mostly reverts commit 6bd97bf273bd ("ext4: remove redundant<br /> mb_regenerate_buddy()") and reintroduces mb_regenerate_buddy(). Based on<br /> code in mb_free_blocks(), fast commit replay can end up marking as free<br /> blocks that are already marked as such. This causes corruption of the<br /> buddy bitmap so we need to regenerate it in that case.

Vulnerable products and versions

CPE From Up to
cpe:2.3:o:linux:linux_kernel:*:*:*:*:*:*:*:* 5.10.211 (excluding)
cpe:2.3:o:linux:linux_kernel:*:*:*:*:*:*:*:* 5.11.0 (including) 5.15.150 (excluding)
cpe:2.3:o:linux:linux_kernel:*:*:*:*:*:*:*:* 5.16.0 (including) 6.1.78 (excluding)
cpe:2.3:o:linux:linux_kernel:*:*:*:*:*:*:*:* 6.2.0 (including) 6.6.17 (excluding)
cpe:2.3:o:linux:linux_kernel:*:*:*:*:*:*:*:* 6.7.0 (including) 6.7.5 (excluding)