cbcvebase.
CVE-2024-34027
published 2024-06-24

CVE-2024-34027: In the Linux kernel, the following vulnerability has been resolved: f2fs: compress: fix to cover {reserve,release}_compress_blocks() w/ cp_rwsem lock It needs…

PriorityP427high7CVSS 3.1
AVLACHPRLUINSUCHIHAH
EPSS
0.23%
14.0th percentile
In the Linux kernel, the following vulnerability has been resolved: f2fs: compress: fix to cover {reserve,release}_compress_blocks() w/ cp_rwsem lock It needs to cover {reserve,release}_compress_blocks() w/ cp_rwsem lock to avoid racing with checkpoint, otherwise, filesystem metadata including blkaddr in dnode, inode fields and .total_valid_block_count may be corrupted after SPO case.

Affected

19 ranges
VendorProductVersion rangeFixed in
debianlinux< linux 6.1.94-1 (bookworm)linux 6.1.94-1 (bookworm)
linuxlinux
linuxlinux>= ef8d563f184e1112651f2cbde383d43e599334e8 < a6e1f7744e9b84f86a629a76024bba8468aa153ba6e1f7744e9b84f86a629a76024bba8468aa153b
linuxlinux>= ef8d563f184e1112651f2cbde383d43e599334e8 < b5bac43875aa27ec032dbbb86173baae6dce6182b5bac43875aa27ec032dbbb86173baae6dce6182
linuxlinux>= ef8d563f184e1112651f2cbde383d43e599334e8 < 5d47d63883735718825ca2efc4fca6915469774f5d47d63883735718825ca2efc4fca6915469774f
linuxlinux>= ef8d563f184e1112651f2cbde383d43e599334e8 < 329edb7c9e3b6ca27e6ca67ab1cdda1740fb3a2b329edb7c9e3b6ca27e6ca67ab1cdda1740fb3a2b
linuxlinux>= ef8d563f184e1112651f2cbde383d43e599334e8 < 69136304fd144144a4828c7b7b149d0f80321ba469136304fd144144a4828c7b7b149d0f80321ba4
linuxlinux>= ef8d563f184e1112651f2cbde383d43e599334e8 < 0a4ed2d97cb6d044196cc3e726b6699222b410190a4ed2d97cb6d044196cc3e726b6699222b41019
linuxlinux_kernel>= 0 < 5.10.221-15.10.221-1
linuxlinux_kernel>= 0 < 6.1.94-16.1.94-1
linuxlinux_kernel>= 0 < 6.9.7-16.9.7-1
linuxlinux_kernel>= 0 < 6.9.7-16.9.7-1
linuxlinux_kernel>= 0 < 5.15.0-121.1315.15.0-121.131
linuxlinux_kernel>= 0 < 6.8.0-44.446.8.0-44.44
linuxlinux_kernel>= 5.11 < 5.15.1615.15.161
linuxlinux_kernel>= 5.16 < 6.1.936.1.93
linuxlinux_kernel>= 5.8 < 5.10.2195.10.219
linuxlinux_kernel>= 6.2 < 6.6.336.6.33
linuxlinux_kernel>= 6.7 < 6.9.46.9.4

CVSS provenance

nvdv3.17.0HIGHCVSS:3.1/AV:L/AC:H/PR:L/UI:N/S:U/C:H/I:H/A:H
osv7.0HIGH
vendor_debian7.0HIGH
vendor_redhat7.0HIGH
vendor_ubuntu6.3MEDIUM
Stop checking back — get the weekly exploitation signal.

Every Monday: what got weaponized or added to CISA KEV in the last seven days — each CVE cross-linked to its PoC, Nuclei template, and detection rule. Free, one email a week, unsubscribe in one click.