Bug 2320224 (CVE-2024-47723) - CVE-2024-47723 kernel: jfs: fix out-of-bounds in dbNextAG() and diAlloc()
Summary: CVE-2024-47723 kernel: jfs: fix out-of-bounds in dbNextAG() and diAlloc()
Keywords:
Status: NEW
Alias: CVE-2024-47723
Product: Security Response
Classification: Other
Component: vulnerability
Version: unspecified
Hardware: All
OS: Linux
medium
medium
Target Milestone: ---
Assignee: Product Security DevOps Team
QA Contact:
URL:
Whiteboard:
Depends On: 2320290
Blocks:
TreeView+ depends on / blocked
 
Reported: 2024-10-21 13:03 UTC by OSIDB Bzimport
Modified: 2024-10-21 20:28 UTC (History)
4 users (show)

Fixed In Version:
Clone Of:
Environment:
Last Closed:
Embargoed:


Attachments (Terms of Use)

Description OSIDB Bzimport 2024-10-21 13:03:32 UTC
In the Linux kernel, the following vulnerability has been resolved:

jfs: fix out-of-bounds in dbNextAG() and diAlloc()

In dbNextAG() , there is no check for the case where bmp->db_numag is
greater or same than MAXAG due to a polluted image, which causes an
out-of-bounds. Therefore, a bounds check should be added in dbMount().

And in dbNextAG(), a check for the case where agpref is greater than
bmp->db_numag should be added, so an out-of-bounds exception should be
prevented.

Additionally, a check for the case where agno is greater or same than
MAXAG should be added in diAlloc() to prevent out-of-bounds.


Note You need to log in before you can comment on or make changes to this bug.