In the Linux kernel, the following vulnerability has been resolved:
jffs2: Prevent rtime decompress memory corruption
The rtime decompression routine does not fully check bounds during the
entirety of the decompression pass and can corrupt memory outside the
decompression buffer if the compressed data is corrupted. This adds the
required check to prevent this failure mode.
Metrics
Affected Vendors & Products
References
History
Wed, 12 Mar 2025 07:00:00 +0000
Type | Values Removed | Values Added |
---|---|---|
Weaknesses | CWE-787 | |
Metrics |
cvssV3_1
|
cvssV3_1
|
Tue, 14 Jan 2025 08:45:00 +0000
Type | Values Removed | Values Added |
---|---|---|
References |
| |
Metrics |
threat_severity
|
cvssV3_1
|
Sat, 11 Jan 2025 14:45:00 +0000
Type | Values Removed | Values Added |
---|---|---|
Description | In the Linux kernel, the following vulnerability has been resolved: jffs2: Prevent rtime decompress memory corruption The rtime decompression routine does not fully check bounds during the entirety of the decompression pass and can corrupt memory outside the decompression buffer if the compressed data is corrupted. This adds the required check to prevent this failure mode. | |
Title | jffs2: Prevent rtime decompress memory corruption | |
References |
|
|

Status: PUBLISHED
Assigner: Linux
Published: 2025-01-11T14:30:59.271Z
Updated: 2025-05-04T10:05:29.395Z
Reserved: 2025-01-11T12:32:49.525Z
Link: CVE-2024-57850

No data.

Status : Received
Published: 2025-01-11T15:15:07.423
Modified: 2025-01-11T15:15:07.423
Link: CVE-2024-57850
