Vulnerability CVE-2024-25739


Published: 2024-02-12

Description:
create_empty_lvol in drivers/mtd/ubi/vtbl.c in the Linux kernel through 6.7.4 can attempt to allocate zero bytes, and crash, because of a missing check for ubi->leb_size.

 References:
https://www.spinics.net/lists/kernel/msg5074816.html
https://groups.google.com/g/syzkaller/c/Xl97YcQA4hg

Copyright 2026, cxsecurity.com

 

Back to Top