CVE-2024-49968
Vulnerability Summary
Timeline
Description
In the Linux kernel, the following vulnerability has been resolved: ext4: filesystems without casefold feature cannot be mounted with siphash When mounting the ext4 filesystem, if the default hash version is set to DX_HASH_SIPHASH but the casefold feature is not set, exit the mounting.
CVSS Metrics
- v3.1•MEDIUM•Score: 5.5CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:N/I:N/A:H
EPSS Trends
Current EPSS score: 0.24%• Percentile: 16%
Affected Systems
- debian•linux
< 6.1.162-1 | < 6.11.4-1 | < 6.11.4-1
- debian•linux-6.1
< 6.1.162-1~deb11u1
- ubuntu•linux
< 5.15.0-173.183 | < 6.8.0-56.58
- ubuntu•linux-allwinner-5.19
all
- ubuntu•linux-aws
< 5.15.0-1103.110 | < 6.8.0-1025.27
- ubuntu•linux-aws-5.0
all
- ubuntu•linux-aws-5.11
all
- ubuntu•linux-aws-5.13
all
- ubuntu•linux-aws-5.15
< 5.15.0-1103.110~20.04.1
- ubuntu•linux-aws-5.19
all
- ubuntu•linux-aws-5.3
all
- ubuntu•linux-aws-5.8
all
- ubuntu•linux-aws-6.2
all
- ubuntu•linux-aws-6.5
all
- ubuntu•linux-aws-6.8
< 6.8.0-1027.29~22.04.1
- ubuntu•linux-aws-fips
all | < 5.15.0-1103.110+fips1
- ubuntu•linux-azure
all | < 5.15.0-1109.118 | < 6.8.0-1025.30
- ubuntu•linux-azure-5.11
all
- ubuntu•linux-azure-5.13
all
- ubuntu•linux-azure-5.15
< 5.15.0-1110.119~20.04.1
- ubuntu•linux-azure-5.19
all
- ubuntu•linux-azure-5.3
all
- ubuntu•linux-azure-5.8
all
- ubuntu•linux-azure-6.11
< 6.11.0-1012.12~24.04.1
- ubuntu•linux-azure-6.2
all
- ubuntu•linux-azure-6.5
all
- ubuntu•linux-azure-6.8
< 6.8.0-1025.30~22.04.1
- ubuntu•linux-azure-edge
all
- ubuntu•linux-azure-fde
all | all
- ubuntu•linux-azure-fde-5.19
all
- ubuntu•linux-azure-fde-6.2
all
- ubuntu•linux-azure-fips
all | < 5.15.0-1109.118+fips1
- ubuntu•linux-azure-nvidia
< 6.8.0-1014.15
- ubuntu•linux-bluefield
all | < 5.15.0-1086.88
- ubuntu•linux-fips
all | < 5.15.0-173.183+fips1 | < 6.8.0-78.78+fips1
- ubuntu•linux-gcp
all | < 5.15.0-1103.112 | < 6.8.0-1026.28
- ubuntu•linux-gcp-5.11
all
- ubuntu•linux-gcp-5.13
all
- ubuntu•linux-gcp-5.15
< 5.15.0-1103.112~20.04.1
- ubuntu•linux-gcp-5.19
all
- ubuntu•linux-gcp-5.3
all
- ubuntu•linux-gcp-5.8
all
- ubuntu•linux-gcp-6.11
< 6.11.0-1011.11~24.04.1
- ubuntu•linux-gcp-6.2
all
- ubuntu•linux-gcp-6.5
all
- ubuntu•linux-gcp-6.8
< 6.8.0-1026.28~22.04.1
- ubuntu•linux-gcp-fips
all | < 5.15.0-1103.112+fips1
- ubuntu•linux-gke
all | < 5.15.0-1099.105 | < 6.8.0-1021.25
- ubuntu•linux-gke-4.15
all
- ubuntu•linux-gke-5.15
all
Showing first 50 affected entries in server-rendered view.
References (34)
- https://git.kernel.org/stable/c/86b81d4eab1cd4c56f7447896232cf33472c2395
- https://git.kernel.org/stable/c/11bd1c279bac701ba91119875796ffff3b98250e
- https://git.kernel.org/stable/c/52c4538a92da6f3242d4140c03ddc5ee71b39ba8
- https://git.kernel.org/stable/c/e1373903db6c4ac994de0d18076280ad88e12dee
- https://git.kernel.org/stable/c/985b67cd86392310d9e9326de941c22fc9340eec
- https://cert-portal.siemens.com/productcert/html/ssa-019113.html
- https://ubuntu.com/security/CVE-2024-49968
- https://www.cve.org/CVERecord?id=CVE-2024-49968
- https://git.kernel.org/linus/985b67cd86392310d9e9326de941c22fc9340eec
- https://ubuntu.com/security/notices/USN-7276-1
- https://ubuntu.com/security/notices/USN-7277-1
- https://ubuntu.com/security/notices/USN-7310-1
- https://ubuntu.com/security/notices/USN-7383-1
- https://ubuntu.com/security/notices/USN-7384-1
- https://ubuntu.com/security/notices/USN-7385-1
- https://ubuntu.com/security/notices/USN-7386-1
- https://ubuntu.com/security/notices/USN-7383-2
- https://ubuntu.com/security/notices/USN-7384-2
- https://ubuntu.com/security/notices/USN-7403-1
- https://ubuntu.com/security/notices/USN-7451-1
- https://ubuntu.com/security/notices/USN-7468-1
- https://ubuntu.com/security/notices/USN-7523-1
- https://ubuntu.com/security/notices/USN-7524-1
- https://ubuntu.com/security/notices/USN-8096-1
- https://ubuntu.com/security/notices/USN-8096-2
- https://ubuntu.com/security/notices/USN-8096-3
- https://ubuntu.com/security/notices/USN-8096-4
- https://ubuntu.com/security/notices/USN-8116-1
- https://ubuntu.com/security/notices/USN-8096-5
- https://ubuntu.com/security/notices/USN-8141-1
- https://ubuntu.com/security/notices/USN-8163-1
- https://ubuntu.com/security/notices/USN-8163-2
- https://ubuntu.com/security/notices/USN-8243-1
- https://security-tracker.debian.org/tracker/CVE-2024-49968