CVE-2024-46777Classic Buffer Overflow in Linux

Severity
5.5MEDIUMNVD
OSV8.8OSV7.1
EPSS
0.0%
top 98.03%
CISA KEV
Not in KEV
Exploit
No known exploits
Timeline
PublishedSep 18
Latest updateApr 15

Description

In the Linux kernel, the following vulnerability has been resolved: udf: Avoid excessive partition lengths Avoid mounting filesystems where the partition would overflow the 32-bits used for block number. Also refuse to mount filesystems where the partition length is so large we cannot safely index bits in a block bitmap.

CVSS vector

CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:N/I:N/A:HExploitability: 1.8 | Impact: 3.6

Affected Packages6 packages

NVDlinux/linux_kernel4.205.4.284+6
Debianlinux/linux_kernel< 5.10.226-1+3
Ubuntulinux/linux_kernel< 5.4.0-200.220+4
CVEListV5linux/linux1da177e4c3f41524e886b7f1b8a0c1fc7321cac2c0c23130d38e8bc28e9ef581443de9b1fc749966+8
debiandebian/linux< linux 6.1.112-1 (bookworm)

Patches

🔴Vulnerability Details

23
OSV
linux-gcp, linux-gcp-4.15, linux-gcp-fips vulnerabilities2026-04-06
OSV
linux-fips, linux-aws-fips vulnerabilities2026-04-02
OSV
linux-fips vulnerabilities2026-04-02
OSV
linux, linux-aws, linux-aws-hwe, linux-kvm, linux-oracle vulnerabilities2026-04-02
OSV
linux, linux-aws, linux-kvm, linux-lts-xenial vulnerabilities2026-04-01

📋Vendor Advisories

26
Ubuntu
Linux kernel (Azure) vulnerabilities2026-04-15
Ubuntu
Linux kernel (HWE) vulnerabilities2026-04-09
Ubuntu
Linux kernel (GCP) vulnerabilities2026-04-06
Ubuntu
Linux kernel vulnerabilities2026-04-02
Ubuntu
Linux kernel (FIPS) vulnerabilities2026-04-02