kernel is vulnerable to out-of-bounds write. It is possible due to a flaw in ext4_xattr_set_entry
in fs/ext4/xattr.c
.
lists.opensuse.org/opensuse-security-announce/2020-03/msg00021.html
access.redhat.com/documentation/en-us/red_hat_enterprise_linux/8/html/8.3_release_notes/index
access.redhat.com/errata/RHSA-2020:4609
access.redhat.com/security/updates/classification/#moderate
bugzilla.suse.com/show_bug.cgi?id=1158021
git.kernel.org/pub/scm/linux/kernel/git/torvalds/linux.git/commit/?id=345c0dbf3a30
github.com/bobfuzzer/CVE/tree/master/CVE-2019-19319
lists.debian.org/debian-lts-announce/2020/06/msg00011.html
lists.debian.org/debian-lts-announce/2020/06/msg00012.html
lists.debian.org/debian-lts-announce/2020/06/msg00013.html
security.netapp.com/advisory/ntap-20200103-0001/
usn.ubuntu.com/4391-1/
www.debian.org/security/2020/dsa-4698