udf: Detect system inodes linked into directory hierarchy
21Vexday Risk Score
No sign of exploitation. No public exploitation artifact known so far.
ssvc Trackcvss 7.8epss 0.2%
exploitation probability
0.2%top 95% of all CVEs
observed exploitation
nono source reports it
In the Linux kernel, the following vulnerability has been resolved:
udf: Detect system inodes linked into directory hierarchy
When UDF filesystem is corrupted, hidden system inodes can be linked
into directory hierarchy which is an avenue for further serious
corruption of the filesystem and kernel confusion as noticed by syzbot
fuzzed images. Refuse to access system inodes linked into directory
hierarchy and vice versa.
CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H
Affected products
Linux · LinuxReferences
https://git.kernel.org/stable/c/1dc71eeb198a8daa17d0c995998a53b0b749a158https://git.kernel.org/stable/c/1f328751b65c49c13a312d67a3bf27766b85baf7https://git.kernel.org/stable/c/37e74003d81e79457535cbbdfa1603431c03fac0https://git.kernel.org/stable/c/85a37983ec69cc9fcd188bc37c4de15ee326355ahttps://git.kernel.org/stable/c/9e3b5ef7d02eaa6553e79b4af9bd99227280f245https://git.kernel.org/stable/c/a44ec34b90440ada190924f5908b97026504fdcdhttps://git.kernel.org/stable/c/d747b31e2925a2f384e7dd1901a2e5bc5f984ed8