cbcvebase.
CVE-2024-56570
published 2024-12-27

CVE-2024-56570: In the Linux kernel, the following vulnerability has been resolved: ovl: Filter invalid inodes with missing lookup function Add a check to the…

PriorityP339high7.8CVSS 3.1
AVLACLPRLUINSUCHIHAH
EPSS
0.24%
14.6th percentile
In the Linux kernel, the following vulnerability has been resolved: ovl: Filter invalid inodes with missing lookup function Add a check to the ovl_dentry_weird() function to prevent the processing of directory inodes that lack the lookup function. This is important because such inodes can cause errors in overlayfs when passed to the lowerstack.

Affected

23 ranges
VendorProductVersion rangeFixed in
debianlinux< linux 6.1.123-1 (bookworm)linux 6.1.123-1 (bookworm)
debianlinux-6.1< linux 6.1.123-1 (bookworm)linux 6.1.123-1 (bookworm)
linuxlinux
linuxlinux>= e9be9d5e76e34872f0c37d72e25bc27fe9e2c54c < f9248e2f73fb4afe08324485e98c815ac084d166f9248e2f73fb4afe08324485e98c815ac084d166
linuxlinux>= e9be9d5e76e34872f0c37d72e25bc27fe9e2c54c < 5f86e79c0b2287ffdabe6c1b305a36c4e0f40fe35f86e79c0b2287ffdabe6c1b305a36c4e0f40fe3
linuxlinux>= e9be9d5e76e34872f0c37d72e25bc27fe9e2c54c < 749eac5a6687ec99116e0691d0d71225254654e3749eac5a6687ec99116e0691d0d71225254654e3
linuxlinux>= e9be9d5e76e34872f0c37d72e25bc27fe9e2c54c < ff43d008bbf9b27ada434d6455f039a5ef6cee53ff43d008bbf9b27ada434d6455f039a5ef6cee53
linuxlinux>= e9be9d5e76e34872f0c37d72e25bc27fe9e2c54c < 065bf5dd21639f80e68450de16bda829784dbb8c065bf5dd21639f80e68450de16bda829784dbb8c
linuxlinux>= e9be9d5e76e34872f0c37d72e25bc27fe9e2c54c < 72014e7745cc8250bb8f27bd78694dfd3f1b577372014e7745cc8250bb8f27bd78694dfd3f1b5773
linuxlinux>= e9be9d5e76e34872f0c37d72e25bc27fe9e2c54c < c8b359dddb418c60df1a69beea01d1b3322bfe83c8b359dddb418c60df1a69beea01d1b3322bfe83
linuxlinux_kernel< 5.4.2875.4.287
linuxlinux_kernel>= 0 < 5.10.234-15.10.234-1
linuxlinux_kernel>= 0 < 6.1.123-16.1.123-1
linuxlinux_kernel>= 0 < 6.12.5-16.12.5-1
linuxlinux_kernel>= 0 < 6.12.5-16.12.5-1
linuxlinux_kernel>= 0 < 5.4.0-211.2315.4.0-211.231
linuxlinux_kernel>= 0 < 5.15.0-135.1465.15.0-135.146
linuxlinux_kernel>= 0 < 6.8.0-58.606.8.0-58.60
linuxlinux_kernel>= 5.11 < 5.15.1745.15.174
linuxlinux_kernel>= 5.16 < 6.1.1206.1.120
linuxlinux_kernel>= 5.5 < 5.10.2315.10.231
linuxlinux_kernel>= 6.2 < 6.6.646.6.64
linuxlinux_kernel>= 6.7 < 6.12.46.12.4

CVSS provenance

nvdv3.17.8HIGHCVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H
osv8.8HIGH
vendor_ubuntu8.8HIGH
vendor_debian7.8HIGH
vendor_redhat7.8HIGH
Stop checking back — get the weekly exploitation signal.

Every Monday: what got weaponized or added to CISA KEV in the last seven days — each CVE cross-linked to its PoC, Nuclei template, and detection rule. Free, one email a week, unsubscribe in one click.