In the Linux kernel before 4.15, fs/ocfs2/aops.c omits use of a semaphore and consequently has a race condition for access to the extent tree during read operations in DIRECT mode, which allows local users to cause a denial of service (BUG) by modifying a certain e_cpos field.
Metrics
Affected Vendors & Products
References
History
No history.
MITRE
Status: PUBLISHED
Assigner: mitre
Published: 2018-03-12T03:00:00
Updated: 2024-08-05T21:13:49.057Z
Reserved: 2018-03-11T00:00:00
Link: CVE-2017-18224
Vulnrichment
No data.
NVD
Status : Modified
Published: 2018-03-12T03:29:00.260
Modified: 2018-05-03T01:29:37.367
Link: CVE-2017-18224
Redhat