An issue was discovered in xfs_setattr_nonsize in fs/xfs/xfs_iops.c in the Linux kernel through 5.2.9. XFS partially wedges when a chgrp fails on account of being out of disk quota. xfs_setattr_nonsize is failing to unlock the ILOCK after the xfs_qm_vop_chown_reserve call fails. This is primarily a local DoS attack vector, but it might result as well in remote DoS if the XFS filesystem is exported for instance via NFS.
| Software | From | Fixed in |
|---|---|---|
| linux / linux_kernel | 5.3-rc1 | 5.3-rc1.x |
| linux / linux_kernel | 4.19 | 4.19.69 |
| linux / linux_kernel | 4.14 | 4.14.141 |
| linux / linux_kernel | 4.7 | 4.9.191 |
| linux / linux_kernel | 5.2 | 5.2.11 |
| linux / linux_kernel | 5.3-rc2 | 5.3-rc2.x |
| linux / linux_kernel | 5.3-rc3 | 5.3-rc3.x |
| linux / linux_kernel | 5.3-rc4 | 5.3-rc4.x |
| linux / linux_kernel | 5.3-rc5 | 5.3-rc5.x |
| linux / linux_kernel | 5.3-rc6 | 5.3-rc6.x |
| linux / linux_kernel | 5.3 | 5.3.x |
| canonical / ubuntu_linux | 18.04 | 18.04.x |
| canonical / ubuntu_linux | 19.04 | 19.04.x |
| canonical / ubuntu_linux | 16.04 | 16.04.x |
| opensuse / leap | 15.0 | 15.0.x |
| opensuse / leap | 15.1 | 15.1.x |
| debian / debian_linux | 8.0 | 8.0.x |
| fedoraproject / fedora | 29 | 29.x |
| fedoraproject / fedora | 30 | 30.x |