Gentoo Websites Logo
Go to: Gentoo Home Documentation Forums Lists Bugs Planet Store Wiki Get Gentoo!

Bug 709702 (CVE-2020-8992)

Summary: Kernel: ext4_protect_reserved_inode in fs/ext4/block_validity.c allows attackers to cause a denial of service via a crafted journal size (CVE-2020-8992)
Product: Gentoo Security Reporter: filip ambroz <filip.ambroz>
Component: KernelAssignee: Gentoo Kernel Security <security-kernel>
Status: RESOLVED FIXED    
Severity: normal    
Priority: Normal    
Version: unspecified   
Hardware: All   
OS: Linux   
URL: https://nvd.nist.gov/vuln/detail/CVE-2020-8992
Whiteboard:
Package list:
Runtime testing required: ---

Description filip ambroz 2020-02-15 09:48:16 UTC
ext4_protect_reserved_inode in fs/ext4/block_validity.c in the Linux kernel through 5.5.3 allows attackers to cause a denial of service (soft lockup) via a crafted journal size

References:
https://patchwork.ozlabs.org/patch/1236118/
https://osint.geekcq.com/2020/02/14/cve-2020-8992/
Comment 1 John Helmert III archtester Gentoo Infrastructure gentoo-dev Security 2022-03-26 01:07:19 UTC
Fix in 4.9.224, 4.14.182, 4.19.105, 5.4.21