In the Linux kernel, the following vulnerability has been resolved:
ntfs3: Add bounds checking to mienumattr()
Added bounds checking to make sure that every attr don't stray beyond valid memory region.
[
{
"signature_type": "Line",
"deprecated": false,
"source": "https://git.kernel.org/pub/scm/linux/kernel/git/stable/linux.git@386613a44b858304a88529ade2ccc1e079a5fc56",
"digest": {
"line_hashes": [
"302226609890270009259956108428716060184",
"1757424358860237427700093191960518729",
"137999867404496962210197212017358585452",
"31498298242162432780577801110582505864",
"125987364469528393600027500760748180605",
"5692396707170305916816113554044489142",
"71946216666909470756275347646360663244",
"533286124529361092038578719278167937",
"267504632248981196729566053746378327478",
"157245417403516026313505273275225130969",
"197079669218893486015908621200649925419",
"276671748955560351316725231119436576436",
"246517198373777765028656109005056551405",
"270817325155282839692910084129583208546",
"161051570248650338588757508752274005900",
"164192411166400693038598304615152257631",
"50036130563966284891153519439316155737",
"283832682550162836030287550675524596661",
"197241941619843180723756679021652049833",
"202303586986471625394255087935303039721"
],
"threshold": 0.9
},
"id": "CVE-2024-50248-08e003ea",
"signature_version": "v1",
"target": {
"file": "fs/ntfs3/record.c"
}
},
{
"signature_type": "Function",
"deprecated": false,
"source": "https://git.kernel.org/pub/scm/linux/kernel/git/stable/linux.git@809f9b419c75f8042c58434d2bfe849140643e9d",
"digest": {
"length": 2398.0,
"function_hash": "110778252147986242002038206948185516152"
},
"id": "CVE-2024-50248-110bdeaa",
"signature_version": "v1",
"target": {
"file": "fs/ntfs3/record.c",
"function": "mi_enum_attr"
}
},
{
"signature_type": "Function",
"deprecated": false,
"source": "https://git.kernel.org/pub/scm/linux/kernel/git/stable/linux.git@386613a44b858304a88529ade2ccc1e079a5fc56",
"digest": {
"length": 2404.0,
"function_hash": "127519484858866073280939430631037755128"
},
"id": "CVE-2024-50248-188c5bde",
"signature_version": "v1",
"target": {
"file": "fs/ntfs3/record.c",
"function": "mi_enum_attr"
}
},
{
"signature_type": "Line",
"deprecated": false,
"source": "https://git.kernel.org/pub/scm/linux/kernel/git/stable/linux.git@809f9b419c75f8042c58434d2bfe849140643e9d",
"digest": {
"line_hashes": [
"302226609890270009259956108428716060184",
"1757424358860237427700093191960518729",
"137999867404496962210197212017358585452",
"31498298242162432780577801110582505864",
"125987364469528393600027500760748180605",
"5692396707170305916816113554044489142",
"71946216666909470756275347646360663244",
"533286124529361092038578719278167937",
"267504632248981196729566053746378327478",
"157245417403516026313505273275225130969",
"197079669218893486015908621200649925419",
"276671748955560351316725231119436576436",
"246517198373777765028656109005056551405",
"270817325155282839692910084129583208546",
"161051570248650338588757508752274005900",
"164192411166400693038598304615152257631",
"50036130563966284891153519439316155737",
"283832682550162836030287550675524596661",
"197241941619843180723756679021652049833",
"202303586986471625394255087935303039721"
],
"threshold": 0.9
},
"id": "CVE-2024-50248-1bf48a92",
"signature_version": "v1",
"target": {
"file": "fs/ntfs3/record.c"
}
},
{
"signature_type": "Line",
"deprecated": false,
"source": "https://git.kernel.org/pub/scm/linux/kernel/git/stable/linux.git@556bdf27c2dd5c74a9caacbe524b943a6cd42d99",
"digest": {
"line_hashes": [
"302226609890270009259956108428716060184",
"1757424358860237427700093191960518729",
"137999867404496962210197212017358585452",
"31498298242162432780577801110582505864",
"125987364469528393600027500760748180605",
"5692396707170305916816113554044489142",
"71946216666909470756275347646360663244",
"533286124529361092038578719278167937",
"267504632248981196729566053746378327478",
"157245417403516026313505273275225130969",
"197079669218893486015908621200649925419",
"276671748955560351316725231119436576436",
"246517198373777765028656109005056551405",
"270817325155282839692910084129583208546",
"161051570248650338588757508752274005900",
"164192411166400693038598304615152257631",
"50036130563966284891153519439316155737",
"283832682550162836030287550675524596661",
"197241941619843180723756679021652049833",
"202303586986471625394255087935303039721"
],
"threshold": 0.9
},
"id": "CVE-2024-50248-350a97e6",
"signature_version": "v1",
"target": {
"file": "fs/ntfs3/record.c"
}
},
{
"signature_type": "Function",
"deprecated": false,
"source": "https://git.kernel.org/pub/scm/linux/kernel/git/stable/linux.git@556bdf27c2dd5c74a9caacbe524b943a6cd42d99",
"digest": {
"length": 2398.0,
"function_hash": "110778252147986242002038206948185516152"
},
"id": "CVE-2024-50248-a0c8ff86",
"signature_version": "v1",
"target": {
"file": "fs/ntfs3/record.c",
"function": "mi_enum_attr"
}
}
]