Executive Summary



This Alert is flagged as TOP 25 Common Weakness Enumeration from CWE/SANS. For more information, you can read this.
Informations
Name CVE-2024-47670 First vendor Publication 2024-10-09
Vendor Cve Last vendor Modification 2024-11-08

Security-Database Scoring CVSS v3

Cvss vector : CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H
Overall CVSS Score 7.8
Base Score 7.8 Environmental Score 7.8
impact SubScore 5.9 Temporal Score 7.8
Exploitabality Sub Score 1.8
 
Attack Vector Local Attack Complexity Low
Privileges Required Low User Interaction None
Scope Unchanged Confidentiality Impact High
Integrity Impact High Availability Impact High
Calculate full CVSS 3.0 Vectors scores

Security-Database Scoring CVSS v2

Cvss vector :
Cvss Base Score N/A Attack Range N/A
Cvss Impact Score N/A Attack Complexity N/A
Cvss Expoit Score N/A Authentication N/A
Calculate full CVSS 2.0 Vectors scores

Detail

In the Linux kernel, the following vulnerability has been resolved:

ocfs2: add bounds checking to ocfs2_xattr_find_entry()

Add a paranoia check to make sure it doesn't stray beyond valid memory region containing ocfs2 xattr entries when scanning for a match. It will prevent out-of-bound access in case of crafted images.

Original Source

Url : http://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2024-47670

CWE : Common Weakness Enumeration

% Id Name
100 % CWE-787 Out-of-bounds Write (CWE/SANS Top 25)

CPE : Common Platform Enumeration

TypeDescriptionCount
Application 8
Os 3627

Sources (Detail)

https://git.kernel.org/stable/c/1f6e167d6753fe3ea493cdc7f7de8d03147a4d39
https://git.kernel.org/stable/c/34759b7e4493d7337cbc414c132cef378c492a2c
https://git.kernel.org/stable/c/5bbe51eaf01a5dd6fb3f0dea81791e5dbc6dc6dd
https://git.kernel.org/stable/c/60c0d36189bad58b1a8e69af8781d90009559ea1
https://git.kernel.org/stable/c/8e7bef408261746c160853fc27df3139659f5f77
https://git.kernel.org/stable/c/9b32539590a8e6400ac2f6e7cf9cbb8e08711a2f
https://git.kernel.org/stable/c/9e3041fecdc8f78a5900c3aa51d3d756e73264d6
https://git.kernel.org/stable/c/b49a786beb11ff740cb9e0c20b999c2a0e1729c2
Source Url

Alert History

If you want to see full details history, please login or register.
0
1
2
3
4
5
6
7
8
9
10
11
12
13
Date Informations
2024-11-23 03:03:45
  • Multiple Updates
2024-11-22 03:01:55
  • Multiple Updates
2024-11-20 03:00:13
  • Multiple Updates
2024-11-13 21:21:57
  • Multiple Updates
2024-11-09 00:28:25
  • Multiple Updates
2024-11-08 21:28:06
  • Multiple Updates
2024-10-26 00:28:57
  • Multiple Updates
2024-10-25 21:29:51
  • Multiple Updates
2024-10-25 00:28:59
  • Multiple Updates
2024-10-24 17:28:05
  • Multiple Updates
2024-10-24 00:28:36
  • Multiple Updates
2024-10-17 21:27:32
  • Multiple Updates
2024-10-10 17:27:28
  • Multiple Updates
2024-10-09 21:27:27
  • First insertion