CVE-2024-41013

Updated:

Description:

In the Linux kernel, the following vulnerability has been resolved: xfs: don't walk off the end of a directory data block This adds sanity checks for xfs_dir2_data_unused and xfs_dir2_data_entry to make sure don't stray beyond valid memory region. Before patching, the loop simply checks that the start offset of the dup and dep is within the range. So in a crafted image, if last entry is xfs_dir2_data_unused, we can change dup->length to dup->length-1 and leave 1 byte of space. In the next traversal, this space will be considered as dup or dep. We may encounter an out of bound read when accessing the fixed members. In the patch, we make sure that the remaining bytes large enough to hold an unused entry before accessing xfs_dir2_data_unused and xfs_dir2_data_unused is XFS_DIR2_DATA_ALIGN byte aligned. We also make sure that the remaining bytes large enough to hold a dirent with a single-byte name before accessing xfs_dir2_data_entry.

CVSS3: 5.5


Vendor State

OS Vendor version Errata
RHEL 8 4.18.0-553.22.1.el8_10 RHSA-2024:7000
Oracle Linux 8 4.18.0-553.22.1.el8_10 ELSA-2024-7000
AlmaLinux 8 4.18.0-553.22.1.el8_10 ALSA-2024:7000
Rocky Linux 8 4.18.0-553.22.1.el8_10 RLSA-2024:7000
RHEL 9 5.14.0-427.42.1.el9_4 RHSA-2024:8617
Oracle Linux 9 5.14.0-427.42.1.el9_4 ELSA-2024-8617
Rocky Linux 9 5.14.0-427.42.1.el9_4 RLSA-2024:8617
AlmaLinux 9 5.14.0-427.42.1.el9_4 ALSA-2024:8617

KernelCare State

OS Original kernel version State
RHEL 8
4.18.0-147.0.2.el8_1 show all hide all
4.18.0-147.0.3.el8_1 4.18.0-147.3.1.el8_1 4.18.0-147.5.1.el8_1 4.18.0-147.8.1.el8_1 4.18.0-147.el8 4.18.0-193.1.2.el8_2 4.18.0-193.13.2.el8_2 4.18.0-193.14.3.el8_2 4.18.0-193.19.1.el8_2 4.18.0-193.28.1.el8_2 4.18.0-193.6.3.el8_2 4.18.0-193.el8 4.18.0-240.1.1.el8_3 4.18.0-240.10.1.el8_3 4.18.0-240.15.1.el8_3 4.18.0-240.22.1.el8_3 4.18.0-240.8.1.el8_3 4.18.0-240.el8 4.18.0-305.10.2.el8_4 4.18.0-305.12.1.el8_4 4.18.0-305.17.1.el8_4 4.18.0-305.19.1.el8_4 4.18.0-305.25.1.el8_4 4.18.0-305.3.1.el8_4 4.18.0-305.7.1.el8_4 4.18.0-305.el8 4.18.0-348.12.2.el8_5 4.18.0-348.2.1.el8_5 4.18.0-348.20.1.el8_5 4.18.0-348.23.1.el8_5 4.18.0-348.7.1.el8_5 4.18.0-348.el8 4.18.0-372.13.1.el8_6 4.18.0-372.16.1.el8_6 4.18.0-372.19.1.el8_6 4.18.0-372.26.1.el8_6 4.18.0-372.32.1.el8_6 4.18.0-372.9.1.el8 4.18.0-425.10.1.el8_7 4.18.0-425.13.1.el8_7 4.18.0-425.19.2.el8_7 4.18.0-425.3.1.el8 4.18.0-477.10.1.el8_8 4.18.0-477.13.1.el8_8 4.18.0-477.15.1.el8_8 4.18.0-477.21.1.el8_8 4.18.0-477.27.1.el8_8 4.18.0-513.11.1.el8_9 4.18.0-513.18.1.el8_9 4.18.0-513.24.1.el8_9 4.18.0-513.5.1.el8_9 4.18.0-513.9.1.el8_9 4.18.0-553.16.1.el8_10 4.18.0-553.5.1.el8_10 4.18.0-553.8.1.el8_10 4.18.0-553.el8_10 4.18.0-80.1.2.el8_0 4.18.0-80.11.1.el8_0 4.18.0-80.11.2.el8_0 4.18.0-80.4.2.el8_0 4.18.0-80.7.1.el8_0 4.18.0-80.7.2.el8_0 4.18.0-80.el8
Released
Oracle Linux 8
4.18.0-147.0.2.el8_1 show all hide all
4.18.0-147.0.3.el8_1 4.18.0-147.3.1.el8_1 4.18.0-147.5.1.el8_1 4.18.0-147.8.1.el8_1 4.18.0-147.el8 4.18.0-193.1.2.el8_2 4.18.0-193.13.2.el8_2 4.18.0-193.14.3.el8_2 4.18.0-193.19.1.el8_2 4.18.0-193.28.1.el8_2 4.18.0-193.6.3.el8_2 4.18.0-193.el8 4.18.0-240.1.1.el8_3 4.18.0-240.10.1.el8_3 4.18.0-240.15.1.el8_3 4.18.0-240.22.1.el8_3 4.18.0-240.8.1.el8_3 4.18.0-240.el8 4.18.0-305.10.2.el8_4 4.18.0-305.12.1.el8_4 4.18.0-305.17.1.el8_4 4.18.0-305.19.1.el8_4 4.18.0-305.25.1.el8_4 4.18.0-305.3.1.el8_4 4.18.0-305.7.1.el8_4 4.18.0-305.el8 4.18.0-348.12.2.el8_5 4.18.0-348.2.1.el8_5 4.18.0-348.20.1.el8_5 4.18.0-348.23.1.el8_5 4.18.0-348.7.1.el8_5 4.18.0-348.el8 4.18.0-372.13.1.0.1.el8_6 4.18.0-372.16.1.0.1.el8_6 4.18.0-372.19.1.0.1.el8_6 4.18.0-372.26.1.0.1.el8_6 4.18.0-372.32.1.0.1.el8_6 4.18.0-372.9.1.el8 4.18.0-425.10.1.el8_7 4.18.0-425.13.1.el8_7 4.18.0-425.19.2.el8_7 4.18.0-425.3.1.el8 4.18.0-477.10.1.el8_8 4.18.0-477.13.1.el8_8 4.18.0-477.15.1.el8_8 4.18.0-477.21.1.el8_8 4.18.0-477.27.0.1.el8_8 4.18.0-477.27.1.el8_8 4.18.0-513.11.0.1.el8_9 4.18.0-513.18.0.1.el8_9 4.18.0-513.18.0.2.el8_9 4.18.0-513.18.1.0.1.el8_9 4.18.0-513.18.1.el8_9 4.18.0-513.24.1.el8_9 4.18.0-513.5.1.el8_9 4.18.0-513.9.1.el8_9 4.18.0-553.16.1.el8_10 4.18.0-553.5.1.el8_10 4.18.0-553.8.1.el8_10 4.18.0-553.el8_10 4.18.0-80.1.2.el8_0 4.18.0-80.11.1.el8_0 4.18.0-80.11.2.el8_0 4.18.0-80.4.2.el8_0 4.18.0-80.7.1.el8_0 4.18.0-80.7.2.el8_0 4.18.0-80.el8
Released
CloudLinux OS 8
4.18.0-553.8.1.lve.el8 show all hide all
4.18.0-553.lve.el8 4.18.0-147.0.3.lve.el8 4.18.0-147.3.1.el8.lve.1 4.18.0-147.8.1.el8.lve.1 4.18.0-147.8.1.el8.lve 4.18.0-193.28.1.lve1.el8 4.18.0-305.10.2.2.lve.el8 4.18.0-305.10.2.lve.el8 4.18.0-305.12.1.lve.el8 4.18.0-305.17.1.lve.el8 4.18.0-305.19.1.lve.el8 4.18.0-305.7.1.lve.el8 4.18.0-305.lve.el8 4.18.0-348.12.2.lve.el8 4.18.0-348.20.1.lve.1.el8 4.18.0-348.20.1.lve.el8 4.18.0-348.23.1.lve.el8 4.18.0-348.7.1.lve.el8 4.18.0-348.lve.el8 4.18.0-372.13.1.lve.el8 4.18.0-372.16.1.lve.el8 4.18.0-372.19.1.lve.el8 4.18.0-372.26.1.lve.1.el8 4.18.0-372.32.1.lve.el8 4.18.0-372.9.1.1.lve.el8 4.18.0-372.9.1.lve.el8 4.18.0-425.10.1.lve.el8 4.18.0-425.13.1.lve.el8 4.18.0-425.19.2.lve.el8 4.18.0-425.3.1.lve.1.el8 4.18.0-425.3.1.lve.2.el8 4.18.0-425.3.1.lve.3.el8 4.18.0-425.3.1.lve.el8 4.18.0-477.10.1.lve.el8 4.18.0-477.13.1.lve.1.el8 4.18.0-477.13.1.lve.el8 4.18.0-477.15.1.lve.2.el8 4.18.0-477.21.1.lve.1.el8 4.18.0-477.21.1.lve.el8 4.18.0-477.27.1.lve.el8 4.18.0-477.27.2.lve.el8 4.18.0-513.11.1.lve.el8 4.18.0-513.18.1.lve.1.el8 4.18.0-513.18.1.lve.2.el8 4.18.0-513.18.1.lve.el8 4.18.0-513.24.1.lve.1.el8 4.18.0-513.24.1.lve.2.el8 4.18.0-513.24.1.lve.el8 4.18.0-513.5.1.lve.el8 4.18.0-513.9.1.lve.el8 4.18.0-544.lve.el8 4.18.0-553.16.1.lve.1.el8 4.18.0-553.16.1.lve.el8 4.18.0-553.5.1.lve.1.el8 4.18.0-553.5.1.lve.el8
Released
CloudLinux OS 7h
4.18.0-147.0.3.el7h.lve show all hide all
4.18.0-147.0.3.el7h 4.18.0-147.3.1.el7h.lve.1 4.18.0-147.8.1.el7h.lve.1 4.18.0-147.8.1.el7h.lve 4.18.0-193.28.1.lve1.el7h 4.18.0-305.10.2.2.lve.el7h 4.18.0-305.10.2.lve.el7h 4.18.0-305.12.1.lve.el7h 4.18.0-305.17.1.lve.el7h 4.18.0-305.19.1.lve.el7h 4.18.0-305.7.1.lve.el7h 4.18.0-305.lve.el7h 4.18.0-348.12.2.lve.1.el7h 4.18.0-348.12.2.lve.2.el7h 4.18.0-348.12.2.lve.el7h 4.18.0-348.20.1.lve.1.el7h 4.18.0-348.20.1.lve.el7h 4.18.0-348.23.1.lve.el7h 4.18.0-348.7.1.lve.el7h 4.18.0-348.lve.el7h 4.18.0-372.13.1.lve.el7h 4.18.0-372.16.1.lve.el7h 4.18.0-372.19.1.lve.el7h 4.18.0-372.26.1.lve.1.el7h 4.18.0-372.32.1.lve.el7h 4.18.0-372.9.1.lve.el7h 4.18.0-425.10.1.lve.el7h 4.18.0-425.13.1.lve.el7h 4.18.0-425.19.2.lve.el7h 4.18.0-425.3.1.lve.1.el7h 4.18.0-425.3.1.lve.2.el7h 4.18.0-425.3.1.lve.3.el7h 4.18.0-425.3.1.lve.el7h 4.18.0-477.10.1.lve.1.el7h 4.18.0-477.13.1.lve.1.el7h 4.18.0-477.13.1.lve.el7h 4.18.0-477.15.1.lve.1.el7h 4.18.0-477.15.1.lve.2.el7h 4.18.0-477.21.1.lve.1.el7h 4.18.0-477.21.1.lve.el7h 4.18.0-477.27.1.lve.el7h 4.18.0-477.27.2.lve.el7h 4.18.0-513.11.1.lve.1.el7h 4.18.0-513.11.1.lve.el7h 4.18.0-513.18.1.lve.1.el7h 4.18.0-513.18.1.lve.2.el7h 4.18.0-513.18.1.lve.el7h 4.18.0-513.24.1.lve.1.el7h 4.18.0-513.24.1.lve.2.el7h 4.18.0-513.24.1.lve.el7h 4.18.0-513.5.1.lve.el7h 4.18.0-513.9.1.lve.el7h 4.18.0-553.16.1.lve.1.el7h 4.18.0-553.16.1.lve.el7h 4.18.0-553.5.1.lve.1.el7h 4.18.0-553.5.1.lve.el7h 4.18.0-553.8.1.lve.el7h 4.18.0-553.lve.el7h 4.18.0-80.7.2.el7h
Released
AlmaLinux 8
4.18.0-240.15.1.el8_3 show all hide all
4.18.0-240.22.1.el8_3 4.18.0-240.el8 4.18.0-305.10.2.el8_4 4.18.0-305.12.1.el8_4 4.18.0-305.17.1.el8_4 4.18.0-305.19.1.el8_4 4.18.0-305.25.1.el8_4 4.18.0-305.3.1.el8_4 4.18.0-305.7.1.el8_4 4.18.0-305.el8 4.18.0-348.12.2.el8_5 4.18.0-348.2.1.el8_5 4.18.0-348.20.1.el8_5 4.18.0-348.23.1.el8_5 4.18.0-348.7.1.el8_5 4.18.0-348.el8 4.18.0-372.13.1.el8_6 4.18.0-372.16.1.el8_6 4.18.0-372.19.1.el8_6 4.18.0-372.26.1.el8_6 4.18.0-372.32.1.el8_6 4.18.0-372.9.1.el8 4.18.0-425.10.1.el8_7 4.18.0-425.13.1.el8_7 4.18.0-425.19.2.el8_7 4.18.0-425.3.1.el8 4.18.0-477.10.1.el8_8 4.18.0-477.13.1.el8_8 4.18.0-477.15.1.el8_8 4.18.0-477.21.1.el8_8 4.18.0-477.27.1.el8_8 4.18.0-477.27.2.el8_8 4.18.0-513.11.1.el8_9 4.18.0-513.18.1.el8_9 4.18.0-513.18.2.el8_9 4.18.0-513.24.1.el8_9 4.18.0-513.5.1.el8_9 4.18.0-513.9.1.el8_9 4.18.0-553.16.1.el8_10 4.18.0-553.5.1.el8_10 4.18.0-553.8.1.el8_10 4.18.0-553.el8_10
Released
Rocky Linux 8
4.18.0-372.19.1.el8_6 show all hide all
4.18.0-372.26.1.el8_6 4.18.0-372.32.1.el8_6 4.18.0-372.9.1.el8 4.18.0-425.10.1.el8_7 4.18.0-425.13.1.el8_7 4.18.0-477.21.1.el8_8 4.18.0-477.27.1.el8_8 4.18.0-513.11.1.el8_9.0.1 4.18.0-513.11.1.el8_9 4.18.0-513.18.1.el8_9 4.18.0-513.24.1.el8_9 4.18.0-513.5.1.el8_9 4.18.0-513.9.1.el8_9 4.18.0-553.16.1.el8_10 4.18.0-553.5.1.el8_10 4.18.0-553.8.1.el8_10 4.18.0-553.el8_10 4.18.0-305.10.2.el8_4 4.18.0-305.12.1.el8_4 4.18.0-305.17.1.el8_4 4.18.0-305.19.1.el8_4 4.18.0-305.25.1.el8_4 4.18.0-305.3.1.el8_4 4.18.0-305.7.1.el8_4 4.18.0-348.12.2.el8_5 4.18.0-348.2.1.el8_5 4.18.0-348.20.1.el8_5 4.18.0-348.23.1.el8_5 4.18.0-348.7.1.el8_5 4.18.0-372.13.1.el8_6 4.18.0-372.16.1.el8_6.0.1 4.18.0-372.16.1.el8_6 4.18.0-425.19.2.el8_7 4.18.0-425.3.1.el8 4.18.0-477.10.1.el8_8 4.18.0-477.13.1.el8_8 4.18.0-477.15.1.el8_8
Released
RHEL 9
5.14.0-162.12.1.el9_1 show all hide all
5.14.0-162.18.1.el9_1 5.14.0-162.22.2.el9_1 5.14.0-162.23.1.el9_1 5.14.0-162.6.1.el9_1 5.14.0-284.11.1.el9_2 5.14.0-284.18.1.el9_2 5.14.0-284.25.1.el9_2 5.14.0-284.30.1.el9_2 5.14.0-362.13.1.el9_3 5.14.0-362.18.1.el9_3 5.14.0-362.24.1.el9_3 5.14.0-362.8.1.el9_3 5.14.0-427.13.1.el9_4 5.14.0-427.16.1.el9_4 5.14.0-427.18.1.el9_4 5.14.0-427.20.1.el9_4 5.14.0-427.22.1.el9_4 5.14.0-427.24.1.el9_4 5.14.0-427.26.1.el9_4 5.14.0-427.28.1.el9_4 5.14.0-427.31.1.el9_4 5.14.0-427.33.1.el9_4 5.14.0-427.35.1.el9_4 5.14.0-427.37.1.el9_4 5.14.0-427.40.1.el9_4 5.14.0-70.13.1.el9_0 5.14.0-70.17.1.el9_0 5.14.0-70.22.1.el9_0 5.14.0-70.26.1.el9_0 5.14.0-70.30.1.el9_0 5.14.0-70.5.1.el9_0
Released
Oracle Linux 9
5.14.0-162.12.1.el9_1 show all hide all
5.14.0-162.18.1.el9_1 5.14.0-162.22.2.el9_1 5.14.0-162.23.1.el9_1 5.14.0-162.6.1.el9_1 5.14.0-284.11.1.el9_2 5.14.0-284.18.1.el9_2 5.14.0-284.25.1.0.1.el9_2 5.14.0-284.25.1.el9_2 5.14.0-284.30.0.1.el9_2 5.14.0-284.30.1.el9_2 5.14.0-362.13.0.1.el9_3 5.14.0-362.13.1.el9_3 5.14.0-362.18.0.1.el9_3 5.14.0-362.18.0.2.el9_3 5.14.0-362.18.1.el9_3 5.14.0-362.24.1.0.1.el9_3 5.14.0-362.24.1.0.2.el9_3 5.14.0-362.24.1.el9_3 5.14.0-362.8.1.el9_3 5.14.0-427.13.1.el9_4 5.14.0-427.16.1.el9_4 5.14.0-427.18.1.el9_4 5.14.0-427.20.1.el9_4 5.14.0-427.22.1.el9_4 5.14.0-427.24.1.el9_4 5.14.0-427.26.1.el9_4 5.14.0-427.28.1.el9_4 5.14.0-427.31.1.el9_4 5.14.0-427.33.1.el9_4 5.14.0-427.35.1.el9_4 5.14.0-427.37.1.el9_4 5.14.0-427.40.1.el9_4 5.14.0-70.13.1.0.3.el9_0 5.14.0-70.17.1.0.1.el9_0 5.14.0-70.22.1.0.1.el9_0 5.14.0-70.26.1.0.1.el9_0 5.14.0-70.30.1.0.1.el9_0
Released
Rocky Linux 9
5.14.0-162.12.1.el9_1.0.1 show all hide all
5.14.0-162.12.1.el9_1.0.2 5.14.0-162.18.1.el9_1 5.14.0-162.22.2.el9_1 5.14.0-162.23.1.el9_1 5.14.0-162.6.1.el9_1.0.1 5.14.0-162.6.1.el9_1 5.14.0-284.30.1.el9_2 5.14.0-362.13.1.el9_3 5.14.0-362.18.1.el9_3.0.1 5.14.0-362.18.1.el9_3 5.14.0-362.24.1.el9_3.0.1 5.14.0-362.24.1.el9_3 5.14.0-362.8.1.el9_3 5.14.0-427.16.1.el9_4 5.14.0-427.18.1.el9_4 5.14.0-427.20.1.el9_4.0.1 5.14.0-427.20.1.el9_4 5.14.0-427.22.1.el9_4 5.14.0-427.24.1.el9_4 5.14.0-427.26.1.el9_4 5.14.0-427.28.1.el9_4 5.14.0-427.31.1.el9_4 5.14.0-427.33.1.el9_4 5.14.0-427.35.1.el9_4 5.14.0-427.37.1.el9_4 5.14.0-427.40.1.el9_4 5.14.0-70.22.1.el9_0 5.14.0-70.26.1.el9_0 5.14.0-70.30.1.el9_0
Released
AlmaLinux 9
5.14.0-162.12.1.el9_1 show all hide all
5.14.0-162.18.1.el9_1 5.14.0-162.22.2.el9_1 5.14.0-162.23.1.el9_1 5.14.0-162.6.1.el9_1 5.14.0-284.11.1.el9_2 5.14.0-284.18.1.el9_2 5.14.0-284.25.1.el9_2 5.14.0-284.30.1.el9_2 5.14.0-362.13.1.el9_3 5.14.0-362.18.1.el9_3 5.14.0-362.24.1.el9_3 5.14.0-362.24.2.el9_3 5.14.0-362.8.1.el9_3 5.14.0-427.13.1.el9_4 5.14.0-427.16.1.el9_4 5.14.0-427.18.1.el9_4 5.14.0-427.20.1.el9_4 5.14.0-427.22.1.el9_4 5.14.0-427.24.1.el9_4 5.14.0-427.26.1.el9_4 5.14.0-427.28.1.el9_4 5.14.0-427.31.1.el9_4 5.14.0-427.33.1.el9_4 5.14.0-427.35.1.el9_4 5.14.0-427.37.1.el9_4 5.14.0-427.40.1.el9_4 5.14.0-70.13.1.el9_0 5.14.0-70.17.1.el9_0 5.14.0-70.22.1.el9_0 5.14.0-70.26.1.el9_0 5.14.0-70.30.1.el9_0
Released