Lucene search

K
prionPRIOn knowledge basePRION:CVE-2018-18690
HistoryOct 26, 2018 - 6:29 p.m.

Design/Logic Flaw

2018-10-2618:29:00
PRIOn knowledge base
www.prio-n.com
10

5.7 Medium

AI Score

Confidence

High

0.0004 Low

EPSS

Percentile

10.1%

In the Linux kernel before 4.17, a local attacker able to set attributes on an xfs filesystem could make this filesystem non-operational until the next mount by triggering an unchecked error condition during an xfs attribute change, because xfs_attr_shortform_addname in fs/xfs/libxfs/xfs_attr.c mishandles ATTR_REPLACE operations with conversion of an attr from short to long form.