ACK: [SRU Mantic 0/1] CVE-2023-45898

Philip Cox philip.cox at canonical.com
Wed Oct 25 17:49:41 UTC 2023


On Wed, 2023-10-25 at 12:32 -0300, Thadeu Lima de Souza Cascardo wrote:
> [Impact]
> During extent allocation, ext4 filesystems may access a just-free
> object,
> leading to potential local denial of service.
> 
> [Test case]
> An fio job doing fallocate was run.
> 
> [Potential regressions]
> ext4 performance may be impacted. Potential filesystem corruption
> cannot
> be ruled out.
> 
> Baokun Li (1):
>   ext4: fix slab-use-after-free in ext4_es_insert_extent()
> 
>  fs/ext4/extents_status.c | 44 +++++++++++++++++++++++++++-----------
> --
>  1 file changed, 30 insertions(+), 14 deletions(-)
> 
> -- 
> 2.34.1
> 
> 

-- 
Acked-by: Philip Cox <philip.cox at canonical.com>

-------------- next part --------------
An HTML attachment was scrubbed...
URL: <https://lists.ubuntu.com/archives/kernel-team/attachments/20231025/99ddf1f1/attachment.html>


More information about the kernel-team mailing list