Lucene search

K
redhatcveRedhat.comRH:CVE-2019-19767
HistoryDec 23, 2019 - 5:38 p.m.

CVE-2019-19767

2019-12-2317:38:45
redhat.com
access.redhat.com
25

0.002 Low

EPSS

Percentile

59.7%

A use-after-free flaw was found in the Linux kernel’s ext4 file system functionality when the user mount ext4 partition, with the usage of an additional debug parameter is defining an extra inode size. If this parameter has a non zero value, this flaw allows a local user to crash the system when inode expansion happens.

Mitigation

The mitigation is not to use debug_want_extra_isize parameter when mounting ext4 FS.