Linux kernel is vulnerable to denial of service (DoS) attacks. The vulnerability exists in an unknown code block in the library fs/xfs/libxfs/xfs_attr.c of the component XFS File System because xfs_attr_shortform_addname in fs/xfs/libxfs/xfs_attr.c mishandles ATTR_REPLACE operations with conversion of an attr from short to long form. A local attacker could set attributes on an xfs filesystem which would make the filesystem non-operational until the next mount by triggering an unchecked error condition during an xfs attribute change.
git.kernel.org/cgit/linux/kernel/git/torvalds/linux.git/commit/?id=7b38460dc8e4eafba06c78f8e37099d3b34d473c
www.securityfocus.com/bid/105753
access.redhat.com/articles/3553061
access.redhat.com/documentation/en-us/red_hat_enterprise_linux/7/html/7.6_release_notes/index
access.redhat.com/errata/RHSA-2018:3083
access.redhat.com/security/cve/CVE-2017-18360
access.redhat.com/security/cve/CVE-2018-18690
access.redhat.com/security/updates/classification/#important
bugzilla.kernel.org/show_bug.cgi?id=199119
bugzilla.redhat.com/show_bug.cgi?id=1322930
bugzilla.redhat.com/show_bug.cgi?id=1488484
bugzilla.redhat.com/show_bug.cgi?id=1504058
bugzilla.redhat.com/show_bug.cgi?id=1507027
bugzilla.redhat.com/show_bug.cgi?id=1542494
bugzilla.redhat.com/show_bug.cgi?id=1557434
bugzilla.redhat.com/show_bug.cgi?id=1557599
bugzilla.redhat.com/show_bug.cgi?id=1558328
bugzilla.redhat.com/show_bug.cgi?id=1561162
bugzilla.redhat.com/show_bug.cgi?id=1563697
bugzilla.redhat.com/show_bug.cgi?id=1564186
bugzilla.redhat.com/show_bug.cgi?id=1568167
bugzilla.redhat.com/show_bug.cgi?id=1572983
bugzilla.redhat.com/show_bug.cgi?id=1584775
bugzilla.redhat.com/show_bug.cgi?id=1592654
bugzilla.redhat.com/show_bug.cgi?id=1609717
bugzilla.suse.com/show_bug.cgi?id=1105025
github.com/torvalds/linux/commit/7b38460dc8e4eafba06c78f8e37099d3b34d473c
lists.debian.org/debian-lts-announce/2019/03/msg00017.html
lists.debian.org/debian-lts-announce/2019/03/msg00034.html
lists.debian.org/debian-lts-announce/2019/04/msg00004.html
usn.ubuntu.com/3847-1/
usn.ubuntu.com/3847-2/
usn.ubuntu.com/3847-3/
usn.ubuntu.com/3848-1/
usn.ubuntu.com/3848-2/
usn.ubuntu.com/3849-1/
usn.ubuntu.com/3849-2/