In the Linux kernel, the following vulnerability has been resolved:
fs/ntfs3: Check if more than chunk-size bytes are written
A incorrectly formatted chunk may decompress into more than LZNTCHUNKSIZE bytes and a index out of bounds will occur in smaxoff.
{
"osv_generated_from": "https://github.com/CVEProject/cvelistV5/tree/main/cves/2024/50xxx/CVE-2024-50247.json",
"cna_assigner": "Linux"
}"https://storage.googleapis.com/cve-osv-conversion/osv-output/CVE-2024-50247.json"
[
{
"id": "CVE-2024-50247-19a90a04",
"signature_type": "Line",
"digest": {
"line_hashes": [
"214301265017182700184525098013472905222",
"274150284728411365070094054807517698048",
"175792708701873823632320151521758823315",
"228049498707293291396031749541572476263"
],
"threshold": 0.9
},
"target": {
"file": "fs/ntfs3/lznt.c"
},
"source": "https://git.kernel.org/pub/scm/linux/kernel/git/stable/linux.git@1b6bc5f7212181093b6c5310eea216fc09c721a9",
"signature_version": "v1",
"deprecated": false
},
{
"id": "CVE-2024-50247-27c0ba52",
"signature_type": "Function",
"digest": {
"function_hash": "126275274175266263060397431034172340223",
"length": 805.0
},
"target": {
"file": "fs/ntfs3/lznt.c",
"function": "decompress_chunk"
},
"source": "https://git.kernel.org/pub/scm/linux/kernel/git/stable/linux.git@1b6bc5f7212181093b6c5310eea216fc09c721a9",
"signature_version": "v1",
"deprecated": false
},
{
"id": "CVE-2024-50247-924e1f54",
"signature_type": "Line",
"digest": {
"line_hashes": [
"214301265017182700184525098013472905222",
"274150284728411365070094054807517698048",
"175792708701873823632320151521758823315",
"228049498707293291396031749541572476263"
],
"threshold": 0.9
},
"target": {
"file": "fs/ntfs3/lznt.c"
},
"source": "https://git.kernel.org/pub/scm/linux/kernel/git/stable/linux.git@5f21e3e60982cd7353998b4f59f052134fd47d64",
"signature_version": "v1",
"deprecated": false
},
{
"id": "CVE-2024-50247-b91d3606",
"signature_type": "Function",
"digest": {
"function_hash": "126275274175266263060397431034172340223",
"length": 805.0
},
"target": {
"file": "fs/ntfs3/lznt.c",
"function": "decompress_chunk"
},
"source": "https://git.kernel.org/pub/scm/linux/kernel/git/stable/linux.git@5f21e3e60982cd7353998b4f59f052134fd47d64",
"signature_version": "v1",
"deprecated": false
}
]