CVE-2024-53234

In the Linux kernel, the following vulnerability has been resolved: erofs: handle NONHEAD !delta[1] lclusters gracefully syzbot reported a WARNING in iomap_iter_done: iomap_fiemap+0x73b/0x9b0 fs/iomap/fiemap.c:80 ioctl_fiemap fs/ioctl.c:220 [inline] Generally, NONHEAD lclusters won't have delta[1]==0, except for crafted images and filesystems created by pre-1.0 mkfs versions. Previously, it would immediately bail out if delta[1]==0, which led to inadequate decompressed lengths (thus FIEMAP is impacted). Treat it as delta[1]=1 to work around these legacy mkfs versions. `lclusterbits > 14` is illegal for compact indexes, error out too.
Configurations

Configuration 1 (hide)

OR cpe:2.3:o:linux:linux_kernel:*:*:*:*:*:*:*:*
cpe:2.3:o:linux:linux_kernel:*:*:*:*:*:*:*:*
cpe:2.3:o:linux:linux_kernel:*:*:*:*:*:*:*:*
cpe:2.3:o:linux:linux_kernel:*:*:*:*:*:*:*:*
cpe:2.3:o:linux:linux_kernel:*:*:*:*:*:*:*:*
cpe:2.3:o:linux:linux_kernel:*:*:*:*:*:*:*:*

History

08 Oct 2025, 13:45

Type Values Removed Values Added
CWE NVD-CWE-noinfo
First Time Linux
Linux linux Kernel
CVSS v2 : unknown
v3 : unknown
v2 : unknown
v3 : 5.5
CPE cpe:2.3:o:linux:linux_kernel:*:*:*:*:*:*:*:*
References () https://git.kernel.org/stable/c/0bc8061ffc733a0a246b8689b2d32a3e9204f43c - () https://git.kernel.org/stable/c/0bc8061ffc733a0a246b8689b2d32a3e9204f43c - Patch
References () https://git.kernel.org/stable/c/480c6c7b55aeacac800bc2a0d321ff53273045e5 - () https://git.kernel.org/stable/c/480c6c7b55aeacac800bc2a0d321ff53273045e5 - Patch
References () https://git.kernel.org/stable/c/75a0a6dde803e7a3af700da8da9a361b49f69eba - () https://git.kernel.org/stable/c/75a0a6dde803e7a3af700da8da9a361b49f69eba - Patch
References () https://git.kernel.org/stable/c/daaf68fef4b2ff97928227630021d37b27a96655 - () https://git.kernel.org/stable/c/daaf68fef4b2ff97928227630021d37b27a96655 - Patch
References () https://git.kernel.org/stable/c/f466641debcbea8bdf78d1b63a6270aadf9301bf - () https://git.kernel.org/stable/c/f466641debcbea8bdf78d1b63a6270aadf9301bf - Patch

23 Jan 2025, 17:15

Type Values Removed Values Added
Summary
  • (es) En el kernel de Linux, se ha resuelto la siguiente vulnerabilidad: erofs: gestiona lclusters NONHEAD !delta[1] con gracia syzbot informó una ADVERTENCIA en iomap_iter_done: iomap_fiemap+0x73b/0x9b0 fs/iomap/fiemap.c:80 ioctl_fiemap fs/ioctl.c:220 [en línea] Generalmente, los lclusters NONHEAD no tendrán delta[1]==0, excepto para imágenes y sistemas de archivos creados por versiones de mkfs anteriores a la 1.0. Anteriormente, se cancelaba inmediatamente si delta[1]==0, lo que provocaba longitudes descomprimidas inadecuadas (por lo tanto, FIEMAP se ve afectado). Trátelo como delta[1]=1 para solucionar estas versiones heredadas de mkfs. `lclusterbits > 14` es ilegal para índices compactos, también genera un error.
References
  • () https://git.kernel.org/stable/c/75a0a6dde803e7a3af700da8da9a361b49f69eba -

27 Dec 2024, 14:15

Type Values Removed Values Added
New CVE

Information

Published : 2024-12-27 14:15

Updated : 2025-10-08 13:45


NVD link : CVE-2024-53234

Mitre link : CVE-2024-53234

CVE.ORG link : CVE-2024-53234


JSON object : View

Products Affected

linux

  • linux_kernel