cbcvebase.
CVE-2024-41015
published 2024-07-29

CVE-2024-41015: In the Linux kernel, the following vulnerability has been resolved: ocfs2: add bounds checking to ocfs2_check_dir_entry() This adds sanity checks for…

PriorityP420medium5.5CVSS 3.1
AVLACLPRLUINSUCNINAH
EPSS
0.24%
15.1th percentile
In the Linux kernel, the following vulnerability has been resolved: ocfs2: add bounds checking to ocfs2_check_dir_entry() This adds sanity checks for ocfs2_dir_entry to make sure all members of ocfs2_dir_entry don't stray beyond valid memory region.

Affected

27 ranges· showing 25
VendorProductVersion rangeFixed in
debianlinux< linux 6.1.106-1 (bookworm)linux 6.1.106-1 (bookworm)
debianlinux-6.1< linux 6.1.106-1 (bookworm)linux 6.1.106-1 (bookworm)
linuxlinux
linuxlinux>= 23193e513d1cd69411469f028d56fd175d4a6b07 < 13d38c00df97289e6fba2e54193959293fd910d213d38c00df97289e6fba2e54193959293fd910d2
linuxlinux>= 23193e513d1cd69411469f028d56fd175d4a6b07 < 564d23cc5b216211e1694d53f7e45959396874d0564d23cc5b216211e1694d53f7e45959396874d0
linuxlinux>= 23193e513d1cd69411469f028d56fd175d4a6b07 < 77495e5da5cb110a8fed27b052c77853fe28217677495e5da5cb110a8fed27b052c77853fe282176
linuxlinux>= 23193e513d1cd69411469f028d56fd175d4a6b07 < 53de17ad01cb5f6f8426f597e9d5c87d4cf53bb753de17ad01cb5f6f8426f597e9d5c87d4cf53bb7
linuxlinux>= 23193e513d1cd69411469f028d56fd175d4a6b07 < fd65685594ee707cbf3ddf22ebb73697786ac114fd65685594ee707cbf3ddf22ebb73697786ac114
linuxlinux>= 23193e513d1cd69411469f028d56fd175d4a6b07 < e05a24289db90f76ff606086aadd62d068a88dcde05a24289db90f76ff606086aadd62d068a88dcd
linuxlinux>= 23193e513d1cd69411469f028d56fd175d4a6b07 < 624b380074f0dc209fb8706db3295c735079f34c624b380074f0dc209fb8706db3295c735079f34c
linuxlinux>= 23193e513d1cd69411469f028d56fd175d4a6b07 < edb2e67dd4626b06fd7eb37252d5067912e78d59edb2e67dd4626b06fd7eb37252d5067912e78d59
linuxlinux>= 23193e513d1cd69411469f028d56fd175d4a6b07 < 255547c6bb8940a97eea94ef9d464ea5967763fb255547c6bb8940a97eea94ef9d464ea5967763fb
linuxlinux_kernel< 4.19.3194.19.319
linuxlinux_kernel>= 0 < 5.10.223-15.10.223-1
linuxlinux_kernel>= 0 < 6.1.106-16.1.106-1
linuxlinux_kernel>= 0 < 6.9.12-16.9.12-1
linuxlinux_kernel>= 0 < 6.9.12-16.9.12-1
linuxlinux_kernel>= 0 < 5.4.0-200.2205.4.0-200.220
linuxlinux_kernel>= 0 < 5.15.0-125.1355.15.0-125.135
linuxlinux_kernel>= 0 < 6.8.0-48.486.8.0-48.48
linuxlinux_kernel>= 4.20 < 5.4.2815.4.281
linuxlinux_kernel>= 5.11 < 5.15.1645.15.164
linuxlinux_kernel>= 5.16 < 6.1.1026.1.102
linuxlinux_kernel>= 5.5 < 5.10.2235.10.223
linuxlinux_kernel>= 6.10 < 6.10.26.10.2

CVSS provenance

nvdv3.15.5MEDIUMCVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:N/I:N/A:H
osv8.8HIGH
vendor_ubuntu8.8HIGH
vendor_debian5.5MEDIUM
vendor_redhat5.5MEDIUM
Stop checking back — get the weekly exploitation signal.

Every Monday: what got weaponized or added to CISA KEV in the last seven days — each CVE cross-linked to its PoC, Nuclei template, and detection rule. Free, one email a week, unsubscribe in one click.