CVE-2024-39469 — Excessive Platform Resource Consumption within a Loop in Linux
Severity
7.1HIGHNVD
OSV7.8OSV5.5OSV5.3
EPSS
0.0%
top 91.37%
CISA KEV
Not in KEV
Exploit
No known exploits
Affected products
Timeline
PublishedJun 25
Latest updateAug 14
Description
In the Linux kernel, the following vulnerability has been resolved:
nilfs2: fix nilfs_empty_dir() misjudgment and long loop on I/O errors
The error handling in nilfs_empty_dir() when a directory folio/page read
fails is incorrect, as in the old ext2 implementation, and if the
folio/page cannot be read or nilfs_check_folio() fails, it will falsely
determine the directory as empty and corrupt the file system.
In addition, since nilfs_empty_dir() does not immediately return on a
failed folio/pag…
CVSS vector
CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:N/I:H/A:HExploitability: 1.8 | Impact: 5.2
Affected Packages6 packages
▶CVEListV5linux/linux2ba466d74ed74f073257f86e61519cb8f8f46184 — 2ac8a2fe22bdde9eecce2a42cf5cab79333fb428+8