CVE-2024-42295: Linux Kernel
Medium severity, CVSS 5.5. EPSS: 0.2% chance of exploitation in the next 30 days.
In the Linux kernel, the following vulnerability has been resolved: nilfs2: handle inconsistent state in nilfs_btnode_create_block() Syzbot reported that a buffer state inconsistency was detected in nilfs_btnode_create_block(), triggering a kernel bug. It is not appropriate to treat this inconsistency as a bug; it can occur if the argument block address (the buffer index of the newly created block) is a virtual block number and has been reallocated due to corruption of the bitmap used to manage its allocation state. So, modify nilfs_btnode_create_block() and its callers to treat it as a possible filesystem error, rather than triggering a kernel bug.
Affected products
- Linux Linux Kernel: from 2.6.30, before 4.19.320 (fixed in 4.19.320); from 4.20, before 5.4.282 (fixed in 5.4.282); from 5.5, before 5.10.224 (fixed in 5.10.224); from 5.11, before 5.15.165 (fixed in 5.15.165); from 5.16, before 6.1.103 (fixed in 6.1.103); from 6.2, before 6.6.44 (fixed in 6.6.44); …
Published 2024-08-17. Last modified 2026-06-17.