In the Linux kernel before 4.9.3, fs/xfs/xfs_aops.c allows local users to cause a denial of service (system crash) because there is a race condition between direct and memory-mapped I/O (associated with a hole) that is handled with BUG_ON instead of an I/O failure.
| Software | From | Fixed in |
|---|---|---|
| linux / linux_kernel | - | 4.9.3 |
| debian / debian_linux | 8.0 | 8.0.x |