cbcvebase.
CVE-2024-33847
published 2024-06-24

CVE-2024-33847: In the Linux kernel, the following vulnerability has been resolved: f2fs: compress: don't allow unaligned truncation on released compress inode f2fs image may…

PriorityP421medium5.5CVSS 3.1
AVLACLPRLUINSUCNINAH
EPSS
0.23%
13.5th percentile
In the Linux kernel, the following vulnerability has been resolved: f2fs: compress: don't allow unaligned truncation on released compress inode f2fs image may be corrupted after below testcase: - mkfs.f2fs -O extra_attr,compression -f /dev/vdb - mount /dev/vdb /mnt/f2fs - touch /mnt/f2fs/file - f2fs_io setflags compression /mnt/f2fs/file - dd if=/dev/zero of=/mnt/f2fs/file bs=4k count=4 - f2fs_io release_cblocks /mnt/f2fs/file - truncate -s 8192 /mnt/f2fs/file - umount /mnt/f2fs - fsck.f2fs /dev/vdb [ASSERT] (fsck_chk_inode_blk:1256) --> ino: 0x5 has i_blocks: 0x00000002, but has 0x3 blocks [FSCK] valid_block_count matching with CP [Fail] [0x4, 0x5] [FSCK] other corrupted bugs [Fail] The reason is: partial truncation assume compressed inode has reserved blocks, after partial truncation, valid block count may change w/o .i_blocks and .total_valid_block_count update, result in corruption. This patch only allow cluster size aligned truncation on released compress inode for fixing.

Affected

18 ranges
VendorProductVersion rangeFixed in
debianlinux< linux 6.1.94-1 (bookworm)linux 6.1.94-1 (bookworm)
linuxlinux
linuxlinux>= 8e1651cd667cd6779db28314844d88b6de8312a3 < b8962cf98595d1ec62f40f23667de830567ec8bcb8962cf98595d1ec62f40f23667de830567ec8bc
linuxlinux>= c61404153eb683da9c35aad133131554861ed561 < 8acae047215024d1ac499b3c8337ef1b952f160b8acae047215024d1ac499b3c8337ef1b952f160b
linuxlinux>= c61404153eb683da9c35aad133131554861ed561 < 3ccf5210dc941a7aa0180596ac021568be4d35ec3ccf5210dc941a7aa0180596ac021568be4d35ec
linuxlinux>= c61404153eb683da9c35aad133131554861ed561 < 9f9341064a9b5246a32a7fe56b9f80c6f7f3c62d9f9341064a9b5246a32a7fe56b9f80c6f7f3c62d
linuxlinux>= c61404153eb683da9c35aad133131554861ed561 < 5268241b41b1c5d0acca75e9b97d4fd719251c8c5268241b41b1c5d0acca75e9b97d4fd719251c8c
linuxlinux>= c61404153eb683da9c35aad133131554861ed561 < 29ed2b5dd521ce7c5d8466cd70bf0cc9d07afeee29ed2b5dd521ce7c5d8466cd70bf0cc9d07afeee
linuxlinux_kernel>= 0 < 5.10.221-15.10.221-1
linuxlinux_kernel>= 0 < 6.1.94-16.1.94-1
linuxlinux_kernel>= 0 < 6.9.7-16.9.7-1
linuxlinux_kernel>= 0 < 6.9.7-16.9.7-1
linuxlinux_kernel>= 0 < 5.15.0-121.1315.15.0-121.131
linuxlinux_kernel>= 0 < 6.8.0-44.446.8.0-44.44
linuxlinux_kernel>= 5.14 < 5.15.1615.15.161
linuxlinux_kernel>= 5.16 < 6.1.936.1.93
linuxlinux_kernel>= 6.2 < 6.6.336.6.33
linuxlinux_kernel>= 6.7 < 6.9.46.9.4

CVSS provenance

nvdv3.15.5MEDIUMCVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:N/I:N/A:H
osv5.5MEDIUM
vendor_ubuntu6.3MEDIUM
vendor_debian5.5MEDIUM
vendor_redhat5.5MEDIUM
Stop checking back — get the weekly exploitation signal.

Every Monday: what got weaponized or added to CISA KEV in the last seven days — each CVE cross-linked to its PoC, Nuclei template, and detection rule. Free, one email a week, unsubscribe in one click.