In the Linux kernel, the following vulnerability has been resolved: ext4: fix off-by-one error in do_split Syzkaller detected a use-after-free issue in ext4_insert_dentry that was caused by out-of-…
High CVSS 7.8
Summary
In the Linux kernel, the following vulnerability has been resolved: ext4: fix off-by-one error in do_split Syzkaller detected a use-after-free issue in ext4_insert_dentry that was caused by out-of-bounds access due to incorrect splitting in do_split. BUG: KASAN: use-after-free in ext4_insert_dentry+0x36a/0x6d0 fs/ext4/namei.c:2109 Write of size 251 at addr ffff888074572f14 by task syz-executor335/5847 CPU: 0 UID: 0 PID: 5847 Comm: syz-executor335 Not tainted 6.12.0-rc6-syzkaller-00318-ga9cd…
In-depth triage · Auto channel
No in-depth report has been generated yet (DR-003 v2 AI pipeline is under construction).
Affected products
- :
- :
Sources
- NVD DATABASE
Original Links
- https://git.kernel.org/stable/c/16d9067f00e3a7d1df7c3aa9c20d214923d27e10 Patch
- https://git.kernel.org/stable/c/17df39f455f1289319d4d09e4826aa46852ffd17 Patch
- https://git.kernel.org/stable/c/2883e9e74f73f9265e5f8d1aaaa89034b308e433 Patch
- https://git.kernel.org/stable/c/2eeb1085bf7bd5c7ba796ca4119925fa5d336a3f Patch
- https://git.kernel.org/stable/c/35d0aa6db9d93307085871ceab8a729594a98162 Patch
- https://git.kernel.org/stable/c/515c34cff899eb5dae6aa7eee01c1295b07d81af Patch
- https://git.kernel.org/stable/c/94824ac9a8aaf2fb3c54b4bdde842db80ffa555d Patch
- https://git.kernel.org/stable/c/ab0cc5c25552ae0d20eae94b40a93be11b080fc5 Patch
- https://git.kernel.org/stable/c/b96bd2c3db26ad0daec5b78c85c098b53900e2e1 Patch
- https://lists.debian.org/debian-lts-announce/2025/05/msg00030.html Mailing List
- https://lists.debian.org/debian-lts-announce/2025/05/msg00045.html Mailing List
Timeline
- nvd_ingest NVD