CVE-2024-25739

Publication date

2024-02-12 00:00:00

Family

mitre

State

PUBLISHED

Description

create_empty_lvol in drivers/mtd/ubi/vtbl.c in the Linux kernel through 6.7.4 can attempt to allocate zero bytes, and crash, because of a missing check for ubi->leb_size.