Bug 200167
Summary: | buffer overrun in build_sit_info() when mounting a crafted f2fs image | ||
---|---|---|---|
Product: | File System | Reporter: | Wen Xu (wen.xu) |
Component: | f2fs | Assignee: | F2FS development list (linux-f2fs-devel) |
Status: | RESOLVED CODE_FIX | ||
Severity: | normal | CC: | chao, sbeattie, wen.xu, yuchaochina |
Priority: | P1 | ||
Hardware: | All | ||
OS: | Linux | ||
Kernel Version: | 4.17 | Subsystem: | |
Regression: | No | Bisected commit-id: | |
Attachments: | The (compressed) crafted image which causes crash |
Description
Wen Xu
2018-06-22 13:15:10 UTC
Hi Wen Xu, Thanks for your report. For all issues you reported, I have wrote patches for fixing, could you please test them in f2fs-dev branch of my git tree: https://git.kernel.org/pub/scm/linux/kernel/git/chao/linux.git/log/?h=f2fs-dev In addition, there is one missing patch below in f2fs-dev branch, it needs to pick up and merge it manually. https://sourceforge.net/p/linux-f2fs/mailman/linux-f2fs-devel/thread/20180629055522.80209-1-yuchao0%40huawei.com/#msg36355401 This issue was assigned CVE-2018-13096 (see https://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2018-13096). Thanks. |