CVE-2019-15538
25.08.2019, 16:15
An issue was discovered in xfs_setattr_nonsize in fs/xfs/xfs_iops.c in the Linux kernel through 5.2.9. XFS partially wedges when a chgrp fails on account of being out of disk quota. xfs_setattr_nonsize is failing to unlock the ILOCK after the xfs_qm_vop_chown_reserve call fails. This is primarily a local DoS attack vector, but it might result as well in remote DoS if the XFS filesystem is exported for instance via NFS.Enginsight
Vendor | Product | Version |
---|---|---|
linux | linux_kernel | 4.7 ≤ 𝑥 < 4.9.191 |
linux | linux_kernel | 4.14 ≤ 𝑥 < 4.14.141 |
linux | linux_kernel | 4.19 ≤ 𝑥 < 4.19.69 |
linux | linux_kernel | 5.2 ≤ 𝑥 < 5.2.11 |
linux | linux_kernel | 5.3 |
linux | linux_kernel | 5.3:rc1 |
linux | linux_kernel | 5.3:rc2 |
linux | linux_kernel | 5.3:rc3 |
linux | linux_kernel | 5.3:rc4 |
linux | linux_kernel | 5.3:rc5 |
linux | linux_kernel | 5.3:rc6 |
canonical | ubuntu_linux | 16.04 |
canonical | ubuntu_linux | 18.04 |
canonical | ubuntu_linux | 19.04 |
netapp | data_availability_services | - |
netapp | hci_management_node | - |
netapp | solidfire | - |
netapp | aff_a700s_firmware | - |
netapp | h300s_firmware | - |
netapp | h500s_firmware | - |
netapp | h700s_firmware | - |
netapp | h300e_firmware | - |
netapp | h500e_firmware | - |
netapp | h700e_firmware | - |
netapp | h410s_firmware | - |
netapp | h410c_firmware | - |
netapp | h610s_firmware | - |
opensuse | leap | 15.0 |
opensuse | leap | 15.1 |
debian | debian_linux | 8.0 |
𝑥
= Vulnerable software versions

Debian Releases

Ubuntu Releases
Ubuntu Product | |||||||||||||
---|---|---|---|---|---|---|---|---|---|---|---|---|---|
linux |
| ||||||||||||
linux-aws |
| ||||||||||||
linux-aws-5.0 |
| ||||||||||||
linux-aws-hwe |
| ||||||||||||
linux-azure |
| ||||||||||||
linux-azure-5.3 |
| ||||||||||||
linux-azure-edge |
| ||||||||||||
linux-gcp |
| ||||||||||||
linux-gcp-5.3 |
| ||||||||||||
linux-gcp-edge |
| ||||||||||||
linux-gke-4.15 |
| ||||||||||||
linux-gke-5.0 |
| ||||||||||||
linux-gke-5.3 |
| ||||||||||||
linux-hwe |
| ||||||||||||
linux-hwe-edge |
| ||||||||||||
linux-kvm |
| ||||||||||||
linux-lts-trusty |
| ||||||||||||
linux-lts-xenial |
| ||||||||||||
linux-oem |
| ||||||||||||
linux-oem-5.6 |
| ||||||||||||
linux-oem-osp1 |
| ||||||||||||
linux-oracle |
| ||||||||||||
linux-oracle-5.0 |
| ||||||||||||
linux-oracle-5.3 |
| ||||||||||||
linux-raspi2 |
| ||||||||||||
linux-raspi2-5.3 |
| ||||||||||||
linux-snapdragon |
|
References