CVE-2024-53147

In the Linux kernel, the following vulnerability has been resolved: exfat: fix out-of-bounds access of directory entries In the case of the directory size is greater than or equal to the cluster size, if start_clu becomes an EOF cluster(an invalid cluster) due to file system corruption, then the directory entry where ei->hint_femp.eidx hint is outside the directory, resulting in an out-of-bounds access, which may cause further file system corruption. This commit adds a check for start_clu, if it is an invalid cluster, the file or directory will be treated as empty.
Configurations

Configuration 1 (hide)

OR cpe:2.3:o:linux:linux_kernel:*:*:*:*:*:*:*:*
cpe:2.3:o:linux:linux_kernel:*:*:*:*:*:*:*:*

History

19 Sep 2025, 18:42

Type Values Removed Values Added
CVSS v2 : unknown
v3 : unknown
v2 : unknown
v3 : 7.1
First Time Linux
Linux linux Kernel
CWE CWE-125
CPE cpe:2.3:o:linux:linux_kernel:*:*:*:*:*:*:*:*
References () https://git.kernel.org/stable/c/184fa506e392eb78364d9283c961217ff2c0617b - () https://git.kernel.org/stable/c/184fa506e392eb78364d9283c961217ff2c0617b - Patch
References () https://git.kernel.org/stable/c/3ddd1cb2b458ff6a193bc845f408dfff217db29e - () https://git.kernel.org/stable/c/3ddd1cb2b458ff6a193bc845f408dfff217db29e - Patch
References () https://git.kernel.org/stable/c/a0120d6463368378539ef928cf067d02372efb8c - () https://git.kernel.org/stable/c/a0120d6463368378539ef928cf067d02372efb8c - Patch

24 Dec 2024, 12:15

Type Values Removed Values Added
New CVE

Information

Published : 2024-12-24 12:15

Updated : 2025-10-01 21:16


NVD link : CVE-2024-53147

Mitre link : CVE-2024-53147

CVE.ORG link : CVE-2024-53147


JSON object : View

Products Affected

linux

  • linux_kernel
CWE
CWE-125

Out-of-bounds Read