Impact
The vulnerability arises when the OCFS2 filesystem driver does not fully validate inline extended attribute metadata during inode block validation. The missing bounds checks allow a use‑after‑free condition when corrupted xattr data is read, potentially leading to kernel memory corruption if the defective metadata is parsed by the kernel.
Affected Systems
All Linux kernel builds that include OCFS2 support and have not yet incorporated the ocfs2: validate xattr entry bounds patch series (v7) are affected. Systems running an OCFS2 enabled filesystem without this patch may be vulnerable.
Risk and Exploitability
The CVSS score of 7.8 signals a high severity. The EPSS score of < 1% indicates a low but non‑zero exploitation probability. This vulnerability is not listed in CISA’s KEV catalog, so no publicly documented exploits are known. The likely attack vector is local, requiring an attacker to write corrupted extended attribute data to an OCFS2 volume. Based on the description, it is inferred that the use‑after‑free could allow an attacker to execute arbitrary code in the kernel context if the vulnerability is successfully triggered.
OpenCVE Enrichment