CVE-2023-53450
ext4: remove a BUG_ON in ext4_mb_release_group_pa()
In the Linux kernel, the following vulnerability has been resolved:
ext4: remove a BUG_ON in ext4_mb_release_group_pa()
If a malicious fuzzer overwrites the ext4 superblock while it is
mounted such that the s_first_data_block is set to a very large
number, the calculation of the block group can underflow, and trigger
a BUG_ON check. Change this to be an ext4_warning so that we don't
crash the kernel.
Productos afectados
Linux · Linux¿Quieres saber si tu infraestructura está expuesta a esto?
Hablar con TrueHacking →Referencias
https://git.kernel.org/stable/c/185062a21976fbc38f2efd296951b02c4500cf65https://git.kernel.org/stable/c/463808f237cf73e98a1a45ff7460c2406a150a0bhttps://git.kernel.org/stable/c/53c14e7cc2257191ba15425c15638fc4f8abb92bhttps://git.kernel.org/stable/c/978e5e9111af18741449b81fefd531a622dd969ahttps://git.kernel.org/stable/c/b0fc279de4bf17e1710bb7e83906538ff8f11111https://git.kernel.org/stable/c/bf2a16eb4e6d06124bd8436d4546f61539a65f29https://git.kernel.org/stable/c/d5bf8f7fb3ee3d99d1303ceb54599ea0599a4a5bhttps://git.kernel.org/stable/c/d87a4e4094c9879fc8acdff8ce59fdffa979c8e0https://git.kernel.org/stable/c/ef16d8a1798db1a1604ac44ca1bd73ec6bebf483