[SRU Mantic 0/1] CVE-2023-45898

Thadeu Lima de Souza Cascardo cascardo at canonical.com
Wed Oct 25 15:32:32 UTC 2023


[Impact]
During extent allocation, ext4 filesystems may access a just-free object,
leading to potential local denial of service.

[Test case]
An fio job doing fallocate was run.

[Potential regressions]
ext4 performance may be impacted. Potential filesystem corruption cannot
be ruled out.

Baokun Li (1):
  ext4: fix slab-use-after-free in ext4_es_insert_extent()

 fs/ext4/extents_status.c | 44 +++++++++++++++++++++++++++-------------
 1 file changed, 30 insertions(+), 14 deletions(-)

-- 
2.34.1




More information about the kernel-team mailing list