Total vulnerabilities in the database
In the Linux kernel 5.0.21 and 5.3.11, mounting a crafted btrfs filesystem image, performing some operations, and then making a syncfs system call can lead to a use-after-free in try_merge_free_space in fs/btrfs/free-space-cache.c because the pointer to a left data structure can be the same as the pointer to a right data structure.
Software | From | Fixed in |
---|---|---|
debian / debian_linux | 9.0 | 9.0.x |
canonical / ubuntu_linux | 18.04 | 18.04.x |
canonical / ubuntu_linux | 14.04 | 14.04.x |
canonical / ubuntu_linux | 16.04 | 16.04.x |
linux / linux_kernel | 5.8 | 5.8.3 |
linux / linux_kernel | 5.5.0 | 5.7.17 |
linux / linux_kernel | 4.15 | 4.19.141 |
linux / linux_kernel | 4.10 | 4.14.194 |
linux / linux_kernel | 4.5.0 | 4.9.233 |
linux / linux_kernel | 2.6.31 | 4.4.233 |
linux / linux_kernel | 4.20 | 5.4.60 |