Red Hat Bugzilla – Bug 1610102
CVE-2018-14615 kernel: Buffer overflow in fs/f2fs/inline.c:truncate_inline_inode() when unmounting a crafted f2fs image
Last modified: 2018-09-11 16:48:51 EDT
An issue was discovered in the Linux kernel in the F2FS filesystem code. There is a buffer overflow in truncate_inline_inode() in fs/f2fs/inline.c when umounting a crafted f2fs image, because a length value may be negative. Upstream Bug: https://bugzilla.kernel.org/show_bug.cgi?id=200421
Created kernel tracking bugs for this issue: Affects: fedora-all [bug 1610103]
Note: An F2FS filesystem is not shipped with any of the Red Hat products.
This is fixed for Fedora with the 4.18 rebases.