Security Advisory

CVE-2024-36917

CVE vulnerability detail - eXtreme Datacenter Security Operations

Published 2024-05-30 15:29:13
Last updated 2026-05-11 20:16:59
Assigner Linux
CVSS score not scored
State PUBLISHED

Description

In the Linux kernel, the following vulnerability has been resolved: block: fix overflow in blk_ioctl_discard() There is no check for overflow of 'start + len' in blk_ioctl_discard(). Hung task occurs if submit an discard ioctl with the following param: start = 0x80000000000ff000, len = 0x8000000000fff000; Add the overflow validation now.