cbcvebase.
CVE-2024-41017
published 2024-07-29

CVE-2024-41017: In the Linux kernel, the following vulnerability has been resolved: jfs: don't walk off the end of ealist Add a check before visiting the members of ea to make…

PriorityP418medium5.5CVSS 3.1
AVLACLPRLUINSUCNINAH
EPSS
0.25%
16.0th percentile
In the Linux kernel, the following vulnerability has been resolved: jfs: don't walk off the end of ealist Add a check before visiting the members of ea to make sure each ea stays within the ealist.

Affected

27 ranges· showing 25
VendorProductVersion rangeFixed in
debianlinux< linux 6.1.106-1 (bookworm)linux 6.1.106-1 (bookworm)
debianlinux-6.1< linux 6.1.106-1 (bookworm)linux 6.1.106-1 (bookworm)
linuxlinux
linuxlinux>= 1da177e4c3f41524e886b7f1b8a0c1fc7321cac2 < 7f91bd0f2941fa36449ce1a15faaa64f840d97467f91bd0f2941fa36449ce1a15faaa64f840d9746
linuxlinux>= 1da177e4c3f41524e886b7f1b8a0c1fc7321cac2 < fc16776a82e8df97b6c4f9a10ba95aa44cef7ba5fc16776a82e8df97b6c4f9a10ba95aa44cef7ba5
linuxlinux>= 1da177e4c3f41524e886b7f1b8a0c1fc7321cac2 < 6386f1b6a10e5d1ddd03db4ff6dfc55d488852ce6386f1b6a10e5d1ddd03db4ff6dfc55d488852ce
linuxlinux>= 1da177e4c3f41524e886b7f1b8a0c1fc7321cac2 < 7e21574195a45fc193555fa40e99fed16565ff7e7e21574195a45fc193555fa40e99fed16565ff7e
linuxlinux>= 1da177e4c3f41524e886b7f1b8a0c1fc7321cac2 < 4e034f7e563ab723b93a59980e4a1bb33198ece84e034f7e563ab723b93a59980e4a1bb33198ece8
linuxlinux>= 1da177e4c3f41524e886b7f1b8a0c1fc7321cac2 < 17440dbc66ab98b410514b04987f61deedb8675117440dbc66ab98b410514b04987f61deedb86751
linuxlinux>= 1da177e4c3f41524e886b7f1b8a0c1fc7321cac2 < f4435f476b9bf059cd9e26a69f5b29c768d00375f4435f476b9bf059cd9e26a69f5b29c768d00375
linuxlinux>= 1da177e4c3f41524e886b7f1b8a0c1fc7321cac2 < dbde7bc91093fa9c2410e418b236b70fde044b73dbde7bc91093fa9c2410e418b236b70fde044b73
linuxlinux>= 1da177e4c3f41524e886b7f1b8a0c1fc7321cac2 < d0fa70aca54c8643248e89061da23752506ec0d4d0fa70aca54c8643248e89061da23752506ec0d4
linuxlinux_kernel< 4.19.3194.19.319
linuxlinux_kernel>= 0 < 5.10.223-15.10.223-1
linuxlinux_kernel>= 0 < 6.1.106-16.1.106-1
linuxlinux_kernel>= 0 < 6.9.12-16.9.12-1
linuxlinux_kernel>= 0 < 6.9.12-16.9.12-1
linuxlinux_kernel>= 0 < 5.4.0-200.2205.4.0-200.220
linuxlinux_kernel>= 0 < 5.15.0-125.1355.15.0-125.135
linuxlinux_kernel>= 0 < 6.8.0-48.486.8.0-48.48
linuxlinux_kernel>= 4.20 < 5.4.2815.4.281
linuxlinux_kernel>= 5.11 < 5.15.1645.15.164
linuxlinux_kernel>= 5.16 < 6.1.1026.1.102
linuxlinux_kernel>= 5.5 < 5.10.2235.10.223
linuxlinux_kernel>= 6.10 < 6.10.26.10.2

CVSS provenance

nvdv3.15.5MEDIUMCVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:N/I:N/A:H
osv8.8HIGH
vendor_ubuntu8.8HIGH
vendor_debian5.5MEDIUM
vendor_redhat5.5MEDIUM
Stop checking back — get the weekly exploitation signal.

Every Monday: what got weaponized or added to CISA KEV in the last seven days — each CVE cross-linked to its PoC, Nuclei template, and detection rule. Free, one email a week, unsubscribe in one click.