CVE-2024-38599 is a vulnerability in the Linux kernel's JFFS2 filesystem, specifically affecting how extended attribute (xattr) nodes are handled. It occurs when an xattr node exceeds the size of an eraseblock, causing it to overwrite subsequent data and corrupt the filesystem. This can lead to various errors, including data corruption and Kernel Address Sanitizer (KASAN) crashes. The vulnerability has a CVSS score of 7.1 (HIGH), indicating a significant risk. An attacker with local access (AV:L, PR:L) could exploit this with low attack complexity (AC:L) to cause a denial of service (A:H) or potentially disclose sensitive information (C:H) due to filesystem corruption. Currently, there is no evidence of active exploitation, and no public exploit code (Metasploit, Nuclei, ExploitDB) is available. Community discussion and media coverage are minimal, suggesting low public awareness of this vulnerability.
| Vendor | Product | Version(s) | CPE |
|---|---|---|---|
>= 2.6.18, < 4.19.316CPE matchmatch criteria | cpe:2.3:o:linux:linux_kernel:*:*:*:*:*:*:*:* | ||
>= 4.20, < 5.4.278CPE matchmatch criteria | cpe:2.3:o:linux:linux_kernel:*:*:*:*:*:*:*:* | ||
>= 5.5, < 5.10.219CPE matchmatch criteria | cpe:2.3:o:linux:linux_kernel:*:*:*:*:*:*:*:* | ||
>= 5.11, < 5.15.161CPE matchmatch criteria | cpe:2.3:o:linux:linux_kernel:*:*:*:*:*:*:*:* | ||
>= 5.16, < 6.1.93CPE matchmatch criteria | cpe:2.3:o:linux:linux_kernel:*:*:*:*:*:*:*:* |
CVSS version used by this source: 3.1
CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:N/A:H
The average CVE in this peer group has 0.0 Twitter, 0.1 Reddit, 0.2 Bluesky, 0.1 Mastodon, and 0.2 GitHub mentions.
No media coverage found for this CVE.
The average CVE in this peer group has 0.3 InfoSec Media, 0.0 Vendor Blog, and 0.0 Security Researcher mentions.
HP ThinPro 8.1 SP7 Security Updates
Jun 3, 2025HP ThinPro 8.1 SP7 Security Updates
Jun 3, 2025kernel: jffs2: prevent xattr node from overflowing the eraseblock
Jun 19, 2024OVMSA-2024-0016: Unbreakable Enterprise kernel security update (IMPORTANT)