btrfs: replace BUG_ON() with error handling at update_ref_for_cow()
Published Sep 18, 2024
5.5
MEDIUMCVSS 3.1
EPSS 0.25%
Description
Instead of a BUG_ON() just return an error, log an error message and abort the transaction in case we find an extent buffer belonging to the relocation tree that doesn't have the full backref flag set. This is unexpected and should never happen (save for bugs or a potential bad memory).
Affected products
-
Affected
- ≥ , <
- ≥ , <
- ≥ , <
- ≥ , <
- ≥ , <
-
Affected
- 2.6.31
Unaffected
- ≥ 0, < 2.6.31
- ≥ 5.15.167, ≤ 5.15.*
- ≥ 6.1.110, ≤ 6.1.*
- ≥ 6.10.10, ≤ 6.10.*
- 6.11
- ≥ 6.6.51, ≤ 6.6.*
Default status is the baseline for the product. Each version can override it (patched versions can be marked unaffected).
- < 5.15.167
- ≥ 5.16 · < 6.1.110
- ≥ 6.2 · < 6.6.51
- ≥ 6.7 · < 6.10.10
No data.
Red Hat Enterprise Linux 6
kernel
Out of support scope
Red Hat Enterprise Linux 7
kernel
Out of support scope
Red Hat Enterprise Linux 7
kernel-rt
Out of support scope
Red Hat Enterprise Linux 8
kernel
Not affected
Red Hat Enterprise Linux 8
kernel-rt
Not affected
Red Hat Enterprise Linux 9
kernel
Not affected
Red Hat Enterprise Linux 9
kernel-rt
Not affected
| Product | Package | State | Advisory |
|---|---|---|---|
| Red Hat Enterprise Linux 6 | kernel | Out of support scope | n/a |
| Red Hat Enterprise Linux 7 | kernel | Out of support scope | n/a |
| Red Hat Enterprise Linux 7 | kernel-rt | Out of support scope | n/a |
| Red Hat Enterprise Linux 8 | kernel | Not affected | n/a |
| Red Hat Enterprise Linux 8 | kernel-rt | Not affected | n/a |
| Red Hat Enterprise Linux 9 | kernel | Not affected | n/a |
| Red Hat Enterprise Linux 9 | kernel-rt | Not affected | n/a |
No package ranges for this CVE.
Remediation
No remediation recorded yet.
References (12)
- https://access.redhat.com/security/cve/CVE-2024-46752 Vendor Advisory
- https://bugzilla.redhat.com/show_bug.cgi?id=2313100 Issue Tracking
- https://euvd.enisa.europa.eu/vulnerability/EUVD-2024-42013 Advisory
- https://git.kernel.org/stable/c/0fbac73a97286a7ec72229cb9b42d760a2c717ac Patch
- https://git.kernel.org/stable/c/41a0f85e268d72fe04f731b8ceea4748c2d65491 Patch
- https://git.kernel.org/stable/c/b50857b96429a09fd3beed9f7f21b7bb7c433688 Patch
- https://git.kernel.org/stable/c/b56329a782314fde5b61058e2a25097af7ccb675 Patch
- https://git.kernel.org/stable/c/f895db00c65e5d77c437cce946da9ec29dcdf563 Patch
- https://lists.debian.org/debian-lts-announce/2025/01/msg00001.html
- https://lore.kernel.org/linux-cve-announce/2024091839-CVE-2024-46752-49e7@gregkh/T
- https://nvd.nist.gov/vuln/detail/CVE-2024-46752
- https://www.cve.org/CVERecord?id=CVE-2024-46752
Change history (0)
No recorded changes yet.
CVE.org / MITRE
CISA Vulnrichment
GitHub
No data