In the Linux kernel, the following vulnerability has been resolved:
hfsplus: don't use BUG_ON() in hfsplus_create_attributes_file()
When the volume header contains erroneous values that do not reflect
the actual state of the filesystem, hfsplus_fill_super() assumes that
the attributes file is not yet created, which later results in hitting
BUG_ON() when hfsplus_create_attributes_file() is called. Replace this
BUG_ON() with -EIO error with a message to suggest running fsck tool.
References
Configurations
Configuration 1 (hide)
|
Configuration 2 (hide)
|
History
No history.
Information
Published : 2025-09-04 16:15
Updated : 2026-01-27 16:25
NVD link : CVE-2025-38712
Mitre link : CVE-2025-38712
CVE.ORG link : CVE-2025-38712
JSON object : View
Products Affected
debian
- debian_linux
linux
- linux_kernel
CWE
CWE-617
Reachable Assertion
