Answer in brief
CVE-2024-38623 records a Unknown severity vulnerability in fs/ntfs3: Use variable length array instead of fixed size. The current sources do not mark it as known exploited. The current feed maps Linux/Linux (generic), Linux/Linux (generic), linux/linux_kernel (generic), linux/linux_kernel (generic) and additional mapped packages. Check affected ranges and fixed versions before updating.
Analysis pending evidence review
HOL Guard separates source facts from reviewed analysis. See the methodology.
A CVSS score is not reported in the current record. The current sources do not mark it as known exploited. Treat this as a source-backed prioritization signal, not a statement about your environment.
Analysis status
Analysis pending evidence review
Factual feed record only; HOL analysis is not approved for indexing. Read the methodology.
The current feed maps Linux/Linux (generic), Linux/Linux (generic), linux/linux_kernel (generic), linux/linux_kernel (generic) and additional mapped packages. Check affected ranges and fixed versions before updating.
| Package | Affected range | Fixed version |
|---|---|---|
| Linux/Linuxgeneric | >=4534a70b7056fd4b9a1c6db5a4ce3c98546b291e <a2de301d90b782ac5d7a5fe32995caaee9ab3a0f || >=4534a70b7056fd4b9a1c6db5a4ce3c98546b291e <3839a9b19a4b70eff6b6ad70446f639f7fd5a3d7 || >=4534a70b7056fd4b9a1c6db5a4ce3c98546b291e <1fe1c9dc21ee52920629d2d9b9bd84358931a8d1 || >=4534a70b7056fd4b9a1c6db5a4ce3c98546b291e <cceef44b34819c24bb6ed70dce5b524bd3e368d1 || >=4534a70b7056fd4b9a1c6db5a4ce3c98546b291e <1997cdc3e727526aa5d84b32f7cbb3f56459b7ef | a2de301d90b782ac5d7a5fe32995caaee9ab3a0f, 3839a9b19a4b70eff6b6ad70446f639f7fd5a3d7, 1fe1c9dc21ee52920629d2d9b9bd84358931a8d1, cceef44b34819c24bb6ed70dce5b524bd3e368d1, 1997cdc3e727526aa5d84b32f7cbb3f56459b7ef |
| Linux/Linuxgeneric | 5.15 | Not reported |
| linux/linux_kernelgeneric | >=4534a70b7056 <a2de301d90b7 | a2de301d90b7 |
| linux/linux_kernelgeneric | >=4534a70b7056 <3839a9b19a4b | 3839a9b19a4b |
| linux/linux_kernelgeneric | >=4534a70b7056 <1fe1c9dc21ee | 1fe1c9dc21ee |
| linux/linux_kernelgeneric | >=4534a70b7056 <cceef44b3481 | cceef44b3481 |
| linux/linux_kernelgeneric | >=4534a70b7056 <1997cdc3e727 | 1997cdc3e727 |
| linux/linux_kernelgeneric | 5.15 | Not reported |
Published upstream
Jun 21, 2024
Evidence: source:cvelist:source_dates:source-dates:recordSource modified
Aug 5, 2026
Evidence: source:cvelist:source_dates:source-dates:recordFirst seen by HOL
Aug 5, 2026
In the Linux kernel, the following vulnerability has been resolved: fs/ntfs3: Use variable length array instead of fixed size Should fix smatch warning: ntfs_set_label() error: __builtin_memcpy() 'uni->name' too small (20 vs 256)
Quoted source text, attributed separately from HOL analysis.
Answer in brief
CVE-2024-38623 records a Unknown severity vulnerability in fs/ntfs3: Use variable length array instead of fixed size. The current sources do not mark it as known exploited. The current feed maps Linux/Linux (generic), Linux/Linux (generic), linux/linux_kernel (generic), linux/linux_kernel (generic) and additional mapped packages. Check affected ranges and fixed versions before updating.
Analysis pending evidence review
HOL Guard separates source facts from reviewed analysis. See the methodology.
A CVSS score is not reported in the current record. The current sources do not mark it as known exploited. Treat this as a source-backed prioritization signal, not a statement about your environment.
Analysis status
Analysis pending evidence review
Factual feed record only; HOL analysis is not approved for indexing. Read the methodology.
The current feed maps Linux/Linux (generic), Linux/Linux (generic), linux/linux_kernel (generic), linux/linux_kernel (generic) and additional mapped packages. Check affected ranges and fixed versions before updating.
| Package | Affected range | Fixed version |
|---|---|---|
| Linux/Linuxgeneric | >=4534a70b7056fd4b9a1c6db5a4ce3c98546b291e <a2de301d90b782ac5d7a5fe32995caaee9ab3a0f || >=4534a70b7056fd4b9a1c6db5a4ce3c98546b291e <3839a9b19a4b70eff6b6ad70446f639f7fd5a3d7 || >=4534a70b7056fd4b9a1c6db5a4ce3c98546b291e <1fe1c9dc21ee52920629d2d9b9bd84358931a8d1 || >=4534a70b7056fd4b9a1c6db5a4ce3c98546b291e <cceef44b34819c24bb6ed70dce5b524bd3e368d1 || >=4534a70b7056fd4b9a1c6db5a4ce3c98546b291e <1997cdc3e727526aa5d84b32f7cbb3f56459b7ef | a2de301d90b782ac5d7a5fe32995caaee9ab3a0f, 3839a9b19a4b70eff6b6ad70446f639f7fd5a3d7, 1fe1c9dc21ee52920629d2d9b9bd84358931a8d1, cceef44b34819c24bb6ed70dce5b524bd3e368d1, 1997cdc3e727526aa5d84b32f7cbb3f56459b7ef |
| Linux/Linuxgeneric | 5.15 | Not reported |
| linux/linux_kernelgeneric | >=4534a70b7056 <a2de301d90b7 | a2de301d90b7 |
| linux/linux_kernelgeneric | >=4534a70b7056 <3839a9b19a4b | 3839a9b19a4b |
| linux/linux_kernelgeneric | >=4534a70b7056 <1fe1c9dc21ee | 1fe1c9dc21ee |
| linux/linux_kernelgeneric | >=4534a70b7056 <cceef44b3481 | cceef44b3481 |
| linux/linux_kernelgeneric | >=4534a70b7056 <1997cdc3e727 | 1997cdc3e727 |
| linux/linux_kernelgeneric | 5.15 | Not reported |
Published upstream
Jun 21, 2024
Evidence: source:cvelist:source_dates:source-dates:recordSource modified
Aug 5, 2026
Evidence: source:cvelist:source_dates:source-dates:recordFirst seen by HOL
Aug 5, 2026
In the Linux kernel, the following vulnerability has been resolved: fs/ntfs3: Use variable length array instead of fixed size Should fix smatch warning: ntfs_set_label() error: __builtin_memcpy() 'uni->name' too small (20 vs 256)
Quoted source text, attributed separately from HOL analysis.