Bug 2281171 (CVE-2024-35832)
| Summary: | CVE-2024-35832 kernel: bcachefs: kvfree bch_fs::snapshots in bch2_fs_snapshots_exit | ||
|---|---|---|---|
| Product: | [Other] Security Response | Reporter: | Zack Miele <zmiele> |
| Component: | vulnerability | Assignee: | Product Security <prodsec-ir-bot> |
| Status: | NEW --- | QA Contact: | |
| Severity: | medium | Docs Contact: | |
| Priority: | medium | ||
| Version: | unspecified | CC: | acaringi, allarkin, aquini, bhu, chwhite, cye, cyin, dbohanno, debarbos, dfreiber, drow, dvlasenk, esandeen, ezulian, hkrzesin, jarod, jburrell, jdenham, jfaracco, jlelli, joe.lawrence, jshortt, jstancek, jwyatt, kcarcia, ldoskova, lgoncalv, lzampier, mleitner, mmilgram, mstowell, nmurray, ptalbert, rparrazo, rrobaina, rvrbovsk, scweaver, sidakwo, sukulkar, tglozar, vkumar, wcosta, williams, wmealing, ycote, ykopkova, zhijwang |
| Target Milestone: | --- | Keywords: | Security |
| Target Release: | --- | ||
| Hardware: | All | ||
| OS: | Linux | ||
| Whiteboard: | |||
| Fixed In Version: | kernel 6.7.5, kernel 6.8 | Doc Type: | If docs needed, set a value |
| Doc Text: |
A vulnerability was found in the bcachefs filesystem in the Linux kernel. This issue occurs due to improper handling of memory deallocation in the bch2_fs_snapshots_exit function. The use of kvfree on snapshot data can lead to memory corruption or potential crashes. This problem arises when the filesystem does not correctly free resources associated with snapshots, causing instability.
|
Story Points: | --- |
| Clone Of: | Environment: | ||
| Last Closed: | Type: | --- | |
| Regression: | --- | Mount Type: | --- |
| Documentation: | --- | CRM: | |
| Verified Versions: | Category: | --- | |
| oVirt Team: | --- | RHEL 7.3 requirements from Atomic Host: | |
| Cloudforms Team: | --- | Target Upstream Version: | |
| Embargoed: | |||
| Bug Depends On: | 2281172 | ||
| Bug Blocks: | 2281793 | ||
|
Description
Zack Miele
2024-05-17 23:01:49 UTC
Created kernel tracking bugs for this issue: Affects: fedora-all [bug 2281172] The result of automatic check (that is developed by Alexander Larkin) for this CVE-2024-35832 is: SKIP No affected files built, so skip this CVE NO - - unknown (where first YES/NO value means if related sources built). |