Description
In the Linux kernel, the following vulnerability has been resolved: fs: hfsplus: remove WARN_ON() from hfsplus_cat_{read,write}_inode() syzbot is hitting WARN_ON() in hfsplus_cat_{read,write}_inode(), for crafted filesystem image can contain bogus length. There conditions are not kernel bugs that can justify kernel to panic.
Product status
f62f5ee63052324ad94dd05091743d9e09f72070 (git) before 61af77acd039ffd221bf7adf0dc95d0a4d377505
ab778439c6fa0071698b62a351f79d319fd72c53 (git) before c074913b12db3632b11588b31bbfb0fa80a0a1c9
781fa141414ef18b52f15037497155f80bf0ecab (git) before a75d9211a07fed513c08c5d4861c4a36ac6a74fe
1f881d9201f6e0a917004a14329f9ff3d0bfa1e5 (git) before c8daee66585897a4c90d937c91e762100237bff9
48d9e2e6de01ed35e965eb549758a837c07b601d (git) before 37cab61a52d6f42b2d961c51bcf369f09e235fb5
55d1cbbbb29e6656c662ee8f73ba1fc4777532eb (git) before 48960a503fcec76d3f72347b7e679dda08ca43be
55d1cbbbb29e6656c662ee8f73ba1fc4777532eb (git) before 3a9d68d84b2e41ba3f2a727b36f035fad6800492
55d1cbbbb29e6656c662ee8f73ba1fc4777532eb (git) before 81b21c0f0138ff5a499eafc3eb0578ad2a99622c
5.16
Any version before 5.16
4.14.316 (semver)
4.19.284 (semver)
5.4.244 (semver)
5.10.181 (semver)
5.15.113 (semver)
6.1.30 (semver)
6.3.4 (semver)
6.4 (original_commit_for_fix)
References
git.kernel.org/...c/61af77acd039ffd221bf7adf0dc95d0a4d377505
git.kernel.org/...c/c074913b12db3632b11588b31bbfb0fa80a0a1c9
git.kernel.org/...c/a75d9211a07fed513c08c5d4861c4a36ac6a74fe
git.kernel.org/...c/c8daee66585897a4c90d937c91e762100237bff9
git.kernel.org/...c/37cab61a52d6f42b2d961c51bcf369f09e235fb5
git.kernel.org/...c/48960a503fcec76d3f72347b7e679dda08ca43be
git.kernel.org/...c/3a9d68d84b2e41ba3f2a727b36f035fad6800492
git.kernel.org/...c/81b21c0f0138ff5a499eafc3eb0578ad2a99622c