Alpaquita LinuxStreamSecurity Advisory
Search Cve

CVE-2024-42143

Published: July 31, 2024Last modified: June 17, 2025

Description

In the Linux kernel, the following vulnerability has been resolved: orangefs: fix out-of-bounds fsid access Arnd Bergmann sent a patch to fsdevel, he says: "orangefs_statfs() copies two consecutive fields of the superblock into the statfs structure, which triggers a warning from the string fortification helpers" Jan Kara suggested an alternate way to do the patch to make it more readable. I ran both ideas through xfstests and both seem fine. This patch is based on Jan Kara's suggestion.

Status

ProductReleasePackageStatus
Alpaquita Linux23 LTSlinux-ltsFixed (6.1.99-r0)
Streamlinux-ltsFixed (6.1.99-r0)

References

ON THIS PAGE