Vulnerability Description
In the Linux kernel, the following vulnerability has been resolved: ext4: avoid allocating blocks from corrupted group in ext4_mb_find_by_goal() Places the logic for checking if the group's block bitmap is corrupt under the protection of the group lock to avoid allocating blocks from the group with a corrupted block bitmap.
CVSS Score
MEDIUM
Affected Products
| Vendor | Product | Versions |
|---|---|---|
| Linux | Linux Kernel | < 4.19.308 |
| Debian | Debian Linux | 10.0 |
References
- https://git.kernel.org/stable/c/21dbe20589c7f48e9c5d336ce6402bcebfa6d76aPatch
- https://git.kernel.org/stable/c/5a6dcc4ad0f7f7fa8e8d127b5526e7c5f2d38a43Patch
- https://git.kernel.org/stable/c/6b92b1bc16d691c95b152c6dbf027ad64315668dPatch
- https://git.kernel.org/stable/c/832698373a25950942c04a512daa652c18a9b513Patch
- https://git.kernel.org/stable/c/8de8305a25bfda607fc13475ebe84b978c96d7ffPatch
- https://git.kernel.org/stable/c/d3bbe77a76bc52e9d4d0a120f1509be36e25c916Patch
- https://git.kernel.org/stable/c/d639102f4cbd4cb65d1225dba3b9265596aab586Patch
- https://git.kernel.org/stable/c/ffeb72a80a82aba59a6774b0611f792e0ed3b0b7Patch
- https://git.kernel.org/stable/c/21dbe20589c7f48e9c5d336ce6402bcebfa6d76aPatch
- https://git.kernel.org/stable/c/5a6dcc4ad0f7f7fa8e8d127b5526e7c5f2d38a43Patch
- https://git.kernel.org/stable/c/6b92b1bc16d691c95b152c6dbf027ad64315668dPatch
- https://git.kernel.org/stable/c/832698373a25950942c04a512daa652c18a9b513Patch
- https://git.kernel.org/stable/c/8de8305a25bfda607fc13475ebe84b978c96d7ffPatch
- https://git.kernel.org/stable/c/d3bbe77a76bc52e9d4d0a120f1509be36e25c916Patch
- https://git.kernel.org/stable/c/d639102f4cbd4cb65d1225dba3b9265596aab586Patch
FAQ
What is CVE-2024-26772?
CVE-2024-26772 is a vulnerability with a CVSS score of 5.5 (MEDIUM). In the Linux kernel, the following vulnerability has been resolved: ext4: avoid allocating blocks from corrupted group in ext4_mb_find_by_goal() Places the logic for checking if the group's block bi...
How severe is CVE-2024-26772?
CVE-2024-26772 has been rated MEDIUM with a CVSS base score of 5.5/10. Review the CVSS metrics above for detailed severity breakdown.
Is there a patch for CVE-2024-26772?
Check the references section above for vendor advisories and patch information. Affected products include: Linux Linux Kernel, Debian Debian Linux.