U.S. flag   An official website of the United States government
Dot gov

Official websites use .gov
A .gov website belongs to an official government organization in the United States.

Https

Secure .gov websites use HTTPS
A lock (Dot gov) or https:// means you've safely connected to the .gov website. Share sensitive information only on official, secure websites.

Vulnerability Change Records for CVE-2024-26763

Change History

New CVE Received by NIST 4/03/2024 1:15:52 PM

Action Type Old Value New Value
Added Description

								
							
							
						
In the Linux kernel, the following vulnerability has been resolved:

dm-crypt: don't modify the data when using authenticated encryption

It was said that authenticated encryption could produce invalid tag when
the data that is being encrypted is modified [1]. So, fix this problem by
copying the data into the clone bio first and then encrypt them inside the
clone bio.

This may reduce performance, but it is needed to prevent the user from
corrupting the device by writing data with O_DIRECT and modifying them at
the same time.

[1] https://lore.kernel.org/all/20240207004723.GA35324@sol.localdomain/T/
Added Reference

								
							
							
						
kernel.org https://git.kernel.org/stable/c/0dccbb93538fe89a86c6de31d4b1c8c560848eaa [No types assigned]
Added Reference

								
							
							
						
kernel.org https://git.kernel.org/stable/c/1a4371db68a31076afbe56ecce34fbbe6c80c529 [No types assigned]
Added Reference

								
							
							
						
kernel.org https://git.kernel.org/stable/c/3c652f6fa1e1f9f02c3fbf359d260ad153ec5f90 [No types assigned]
Added Reference

								
							
							
						
kernel.org https://git.kernel.org/stable/c/43a202bd552976497474ae144942e32cc5f34d7e [No types assigned]
Added Reference

								
							
							
						
kernel.org https://git.kernel.org/stable/c/50c70240097ce41fe6bce6478b80478281e4d0f7 [No types assigned]
Added Reference

								
							
							
						
kernel.org https://git.kernel.org/stable/c/64ba01a365980755732972523600a961c4266b75 [No types assigned]
Added Reference

								
							
							
						
kernel.org https://git.kernel.org/stable/c/d9e3763a505e50ba3bd22846f2a8db99429fb857 [No types assigned]
Added Reference

								
							
							
						
kernel.org https://git.kernel.org/stable/c/e08c2a8d27e989f0f5b0888792643027d7e691e6 [No types assigned]