A vulnerability was found in f2fs driver in Kernel where there is a possible out of bounds read due to a missing bounds check. This could lead to local information disclosure with System execution privileges needed. User interaction is not needed for exploitation. References: https://source.android.com/security/bulletin/pixel/2019-09-01
Created kernel tracking bugs for this issue: Affects: fedora-all [bug 1819356]
This was fixed for Fedora with the 4.19.14 stable kernel updates.