CVE-2024-58094

Summary

In the Linux kernel, the following vulnerability has been resolved:

jfs: add check read-only before truncation in jfs_truncate_nolock()

Added a check for "read-only" mode in the jfs_truncate_nolock function to avoid errors related to writing to a read-only filesystem.

Call stack:

block_write_begin() { jfs_write_failed() { jfs_truncate() { jfs_truncate_nolock() { txEnd() { … log = JFS_SBI(tblk->sb)->log; // (log == NULL)

If the isReadOnly(ip) condition is triggered in jfs_truncate_nolock, the function execution will stop, and no further data modification will occur. Instead, the xtTruncate function will be called with the "COMMIT_WMAP" flag, preventing modifications in "read-only" mode.

Affected Software

VendorProductVersion RangeStatus
LinuxLinux1da177e4c3f41524e886b7f1b8a0c1fc7321cac2 < b98506e61e1bb6764c6711198cfab826df8ca952affected
LinuxLinux1da177e4c3f41524e886b7f1b8a0c1fc7321cac2 < 1fee021d6cf1d41b3f6e3fd028939be8f5d5c5dbaffected
LinuxLinux1da177e4c3f41524e886b7f1b8a0c1fc7321cac2 < b57a8983916fc2cf54fd8de3afc733c6b3d1c0e5affected
LinuxLinux1da177e4c3f41524e886b7f1b8a0c1fc7321cac2 < 41da1715cd24e177678f93ee27f737b095fc838baffected
LinuxLinux1da177e4c3f41524e886b7f1b8a0c1fc7321cac2 < 77038187890ea82d237b05c8a9c4e08a38b1efcbaffected
LinuxLinux1da177e4c3f41524e886b7f1b8a0c1fc7321cac2 < f605bc3e162f5c6faa9bd3602ce496053d06a4bbaffected
LinuxLinux1da177e4c3f41524e886b7f1b8a0c1fc7321cac2 < b5799dd77054c1ec49b0088b006c9908e256843baffected
LinuxLinux2.6.12affected
LinuxLinux0 < 2.6.12unaffected
LinuxLinux5.10.269 <= 5.10.*unaffected
LinuxLinux5.15.220 <= 5.15.*unaffected
LinuxLinux6.1.187 <= 6.1.*unaffected
LinuxLinux6.6.156 <= 6.6.*unaffected
LinuxLinux6.12.108 <= 6.12.*unaffected
LinuxLinux6.14.2 <= 6.14.*unaffected
LinuxLinux6.15 <= *unaffected

Weaknesses

References