CVE Database
/

CVE-2024-41016

Back to search

CVE-2024-41016

Published: Jul 29, 2024

Modified: May 12, 2026

PUBLISHED

Description

In the Linux kernel, the following vulnerability has been resolved: ocfs2: strict bound check before memcmp in ocfs2_xattr_find_entry() xattr in ocfs2 maybe 'non-indexed', which saved with additional space requested. It's better to check if the memory is out of bound before memcmp, although this possibility mainly comes from crafted poisonous images.

VendorProductVersions

Linux

Linux

affected
cf1d6c763fbcb115263114302485ad17e7933d87 - < e2b3d7a9d019d4d1a0da6c3ea64a1ff79c99c090
affected
cf1d6c763fbcb115263114302485ad17e7933d87 - < e8f9c4af7af7e9e4cd09c0251c7936593147419f
affected
cf1d6c763fbcb115263114302485ad17e7933d87 - < 57a3d89831fcaa2cdbe024b47c7c36d5a56c3637
affected
cf1d6c763fbcb115263114302485ad17e7933d87 - < c031d286eceb82f72f8623b7f4abd2aa491bfb5e
affected
cf1d6c763fbcb115263114302485ad17e7933d87 - < cfb926051fab19b10d1e65976211f364aa820180

+3 more versions

Linux

Linux

affected
2.6.28
unaffected
0 - < 2.6.28
unaffected
4.19.323 - <= 4.19.*
unaffected
5.4.285 - <= 5.4.*
unaffected
5.10.227 - <= 5.10.*

+5 more versions

Security Training

Train your team to recognize and prevent security threats with our comprehensive security awareness program.

Start Training

Vulnerability Scanning

Discover vulnerabilities in your applications and infrastructure before attackers do.

Scan Now