CVE-2024-53101

In the Linux kernel, the following vulnerability has been resolved: fs: Fix uninitialized value issue in from_kuid and from_kgid ocfs2_setattr() uses attr->ia_mode, attr->ia_uid and attr->ia_gid in a trace point even though ATTR_MODE, ATTR_UID and ATTR_GID aren't set. Initialize all fields of newattrs to avoid uninitialized variables, by checking if ATTR_MODE, ATTR_UID, ATTR_GID are initialized, otherwise 0.
Configurations

Configuration 1 (hide)

OR cpe:2.3:o:linux:linux_kernel:*:*:*:*:*:*:*:*
cpe:2.3:o:linux:linux_kernel:*:*:*:*:*:*:*:*
cpe:2.3:o:linux:linux_kernel:*:*:*:*:*:*:*:*
cpe:2.3:o:linux:linux_kernel:*:*:*:*:*:*:*:*
cpe:2.3:o:linux:linux_kernel:*:*:*:*:*:*:*:*
cpe:2.3:o:linux:linux_kernel:*:*:*:*:*:*:*:*
cpe:2.3:o:linux:linux_kernel:*:*:*:*:*:*:*:*
cpe:2.3:o:linux:linux_kernel:6.12:rc1:*:*:*:*:*:*
cpe:2.3:o:linux:linux_kernel:6.12:rc2:*:*:*:*:*:*
cpe:2.3:o:linux:linux_kernel:6.12:rc3:*:*:*:*:*:*
cpe:2.3:o:linux:linux_kernel:6.12:rc4:*:*:*:*:*:*
cpe:2.3:o:linux:linux_kernel:6.12:rc5:*:*:*:*:*:*
cpe:2.3:o:linux:linux_kernel:6.12:rc6:*:*:*:*:*:*
cpe:2.3:o:linux:linux_kernel:6.12:rc7:*:*:*:*:*:*

History

19 Dec 2024, 18:08

Type Values Removed Values Added
References () https://git.kernel.org/stable/c/15f34347481648a567db67fb473c23befb796af5 - () https://git.kernel.org/stable/c/15f34347481648a567db67fb473c23befb796af5 - Patch
References () https://git.kernel.org/stable/c/17ecb40c5cc7755a321fb6148cba5797431ee5b8 - () https://git.kernel.org/stable/c/17ecb40c5cc7755a321fb6148cba5797431ee5b8 - Patch
References () https://git.kernel.org/stable/c/1c28bca1256aecece6e94b26b85cd07e08b0dc90 - () https://git.kernel.org/stable/c/1c28bca1256aecece6e94b26b85cd07e08b0dc90 - Patch
References () https://git.kernel.org/stable/c/1cb5bfc5bfc651982b6203c224d49b7ddacf28bc - () https://git.kernel.org/stable/c/1cb5bfc5bfc651982b6203c224d49b7ddacf28bc - Patch
References () https://git.kernel.org/stable/c/5a72b0d3497b818d8f000c347a7c11801eb27bfc - () https://git.kernel.org/stable/c/5a72b0d3497b818d8f000c347a7c11801eb27bfc - Patch
References () https://git.kernel.org/stable/c/9db25c2b41c34963c3ccf473b08171f87670652e - () https://git.kernel.org/stable/c/9db25c2b41c34963c3ccf473b08171f87670652e - Patch
References () https://git.kernel.org/stable/c/a0c77e5e3dcbffc7c6080ccc89c037f0c86496cf - () https://git.kernel.org/stable/c/a0c77e5e3dcbffc7c6080ccc89c037f0c86496cf - Patch
References () https://git.kernel.org/stable/c/b3e612bd8f64ce62e731e95f635e06a2efe3c80c - () https://git.kernel.org/stable/c/b3e612bd8f64ce62e731e95f635e06a2efe3c80c - Patch
First Time Linux linux Kernel
Linux
CVSS v2 : unknown
v3 : unknown
v2 : unknown
v3 : 5.5
CPE cpe:2.3:o:linux:linux_kernel:6.12:rc1:*:*:*:*:*:*
cpe:2.3:o:linux:linux_kernel:6.12:rc7:*:*:*:*:*:*
cpe:2.3:o:linux:linux_kernel:*:*:*:*:*:*:*:*
cpe:2.3:o:linux:linux_kernel:6.12:rc3:*:*:*:*:*:*
cpe:2.3:o:linux:linux_kernel:6.12:rc5:*:*:*:*:*:*
cpe:2.3:o:linux:linux_kernel:6.12:rc6:*:*:*:*:*:*
cpe:2.3:o:linux:linux_kernel:6.12:rc2:*:*:*:*:*:*
cpe:2.3:o:linux:linux_kernel:6.12:rc4:*:*:*:*:*:*
CWE CWE-908

Information

Published : 2024-11-25 22:15

Updated : 2024-12-19 18:08


NVD link : CVE-2024-53101

Mitre link : CVE-2024-53101

CVE.ORG link : CVE-2024-53101


JSON object : View

Products Affected

linux

  • linux_kernel
CWE
CWE-908

Use of Uninitialized Resource