cbcvebase.
CVE-2024-56597
published 2024-12-27

CVE-2024-56597: In the Linux kernel, the following vulnerability has been resolved: jfs: fix shift-out-of-bounds in dbSplit When dmt_budmin is less than zero, it causes errors…

PriorityP426high7.1CVSS 3.1
AVLACLPRLUINSUCHINAH
EPSS
0.23%
14.5th percentile
In the Linux kernel, the following vulnerability has been resolved: jfs: fix shift-out-of-bounds in dbSplit When dmt_budmin is less than zero, it causes errors in the later stages. Added a check to return an error beforehand in dbAllocCtl itself.

Affected

23 ranges
VendorProductVersion rangeFixed in
debianlinux< linux 6.1.123-1 (bookworm)linux 6.1.123-1 (bookworm)
debianlinux-6.1< linux 6.1.123-1 (bookworm)linux 6.1.123-1 (bookworm)
linuxlinux
linuxlinux>= 1da177e4c3f41524e886b7f1b8a0c1fc7321cac2 < bbb24ce7f06ef9b7c05beb9340787cbe9fd3d08ebbb24ce7f06ef9b7c05beb9340787cbe9fd3d08e
linuxlinux>= 1da177e4c3f41524e886b7f1b8a0c1fc7321cac2 < df7c76636952670b31bd6c12b3aed3c502122273df7c76636952670b31bd6c12b3aed3c502122273
linuxlinux>= 1da177e4c3f41524e886b7f1b8a0c1fc7321cac2 < 6676034aa753aa448beb30dbd75630927ba7cd966676034aa753aa448beb30dbd75630927ba7cd96
linuxlinux>= 1da177e4c3f41524e886b7f1b8a0c1fc7321cac2 < 51a203470f502a64a3da8dcea51c4748e8267a6c51a203470f502a64a3da8dcea51c4748e8267a6c
linuxlinux>= 1da177e4c3f41524e886b7f1b8a0c1fc7321cac2 < c56245baf3fd1f79145dd7408e3ead034b74255cc56245baf3fd1f79145dd7408e3ead034b74255c
linuxlinux>= 1da177e4c3f41524e886b7f1b8a0c1fc7321cac2 < 52756a57e978e2706543a254f88f266cc6702f3652756a57e978e2706543a254f88f266cc6702f36
linuxlinux>= 1da177e4c3f41524e886b7f1b8a0c1fc7321cac2 < a5f5e4698f8abbb25fe4959814093fb5bfa1aa9da5f5e4698f8abbb25fe4959814093fb5bfa1aa9d
linuxlinux_kernel< 5.4.2875.4.287
linuxlinux_kernel>= 0 < 5.10.234-15.10.234-1
linuxlinux_kernel>= 0 < 6.1.123-16.1.123-1
linuxlinux_kernel>= 0 < 6.12.5-16.12.5-1
linuxlinux_kernel>= 0 < 6.12.5-16.12.5-1
linuxlinux_kernel>= 0 < 5.4.0-211.2315.4.0-211.231
linuxlinux_kernel>= 0 < 5.15.0-135.1465.15.0-135.146
linuxlinux_kernel>= 0 < 6.8.0-58.606.8.0-58.60
linuxlinux_kernel>= 5.11 < 5.15.1745.15.174
linuxlinux_kernel>= 5.16 < 6.1.1206.1.120
linuxlinux_kernel>= 5.5 < 5.10.2315.10.231
linuxlinux_kernel>= 6.2 < 6.6.666.6.66
linuxlinux_kernel>= 6.7 < 6.12.56.12.5

CVSS provenance

nvdv3.17.1HIGHCVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:N/A:H
osv8.8HIGH
vendor_ubuntu8.8HIGH
vendor_debian7.1HIGH
vendor_redhat7.1HIGH
Stop checking back — get the weekly exploitation signal.

Every Monday: what got weaponized or added to CISA KEV in the last seven days — each CVE cross-linked to its PoC, Nuclei template, and detection rule. Free, one email a week, unsubscribe in one click.