CVE-2024-26772

Advisory lineage Upstream: 0 Downstream: 36
Analyzed
Published: 03 Apr 2024, 17:00
Last modified:11 May 2026, 20:03

Vulnerability Summary

Overall Risk (default)
low
22/100
CVSS Score
5.5 MEDIUM
v3.1 (cve.org)
EPSS Score
<0.01% LOW
0% probability 0.00%
KEV
Not listed
Ransomware
No reports
Public exploits
None found
Dark Web
Not detected

Timeline

03 Apr 2024, 17:00
Published
Vulnerability first disclosed
11 May 2026, 20:03
Last Modified
Vulnerability information updated

Description

In the Linux kernel, the following vulnerability has been resolved: ext4: avoid allocating blocks from corrupted group in ext4_mb_find_by_goal() Places the logic for checking if the group's block bitmap is corrupt under the protection of the group lock to avoid allocating blocks from the group with a corrupted block bitmap.

CVSS Metrics

  • v3.1MEDIUMScore: 5.5CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:N/I:N/A:H

EPSS Trends

Current EPSS score: 0.01% Percentile: 1%

Affected Systems

  • debiandebian_linux

    10.0

  • linuxlinux

    ≥ 163a203ddb36c36d4a1c942aececda0cc8d06aa7, < 5a6dcc4ad0f7f7fa8e8d127b5526e7c5f2d38a43 | ≥ 163a203ddb36c36d4a1c942aececda0cc8d06aa7, < 6b92b1bc16d691c95b152c6dbf027ad64315668d | ≥ 163a203ddb36c36d4a1c942aececda0cc8d06aa7, < ffeb72a80a82aba59a6774b0611f792e0ed3b0b7 | ≥ 163a203ddb36c36d4a1c942aececda0cc8d06aa7, < 8de8305a25bfda607fc13475ebe84b978c96d7ff | ≥ 163a203ddb36c36d4a1c942aececda0cc8d06aa7, < d639102f4cbd4cb65d1225dba3b9265596aab586 | ≥ 163a203ddb36c36d4a1c942aececda0cc8d06aa7, < d3bbe77a76bc52e9d4d0a120f1509be36e25c916 | ≥ 163a203ddb36c36d4a1c942aececda0cc8d06aa7, < 21dbe20589c7f48e9c5d336ce6402bcebfa6d76a | ≥ 163a203ddb36c36d4a1c942aececda0cc8d06aa7, < 832698373a25950942c04a512daa652c18a9b513 | 3.12

  • linuxlinux_kernel

    < 4.19.308 | ≥ 4.20, < 5.4.270 | ≥ 5.5, < 5.10.211 | ≥ 5.11, < 5.15.150 | ≥ 5.16, < 6.1.80 | ≥ 6.2, < 6.6.19 | ≥ 6.7, < 6.7.7 | 6.8:rc1 | 6.8:rc2

References (10)