Lucene search

K
veracodeVeracode Vulnerability DatabaseVERACODE:19525
HistoryMay 16, 2019 - 3:18 a.m.

Denial Of Service (DoS)

2019-05-1603:18:37
Veracode Vulnerability Database
sca.analysiscenter.veracode.com
15

0.0004 Low

EPSS

Percentile

10.1%

Linux kernel is vulnerable to denial of service (DoS) attacks. The vulnerability exists in an unknown code block in the library fs/xfs/libxfs/xfs_attr.c of the component XFS File System because xfs_attr_shortform_addname in fs/xfs/libxfs/xfs_attr.c mishandles ATTR_REPLACE operations with conversion of an attr from short to long form. A local attacker could set attributes on an xfs filesystem which would make the filesystem non-operational until the next mount by triggering an unchecked error condition during an xfs attribute change.

References