USN-4486-1

Advisory lineage Upstream: 2 Downstream: 0
Published: 02 Sept 2020, 02:22
Last modified:03 Jun 2026, 13:33

Vulnerability Summary

Overall Risk (default)
minimal
0/100
CVSS Score
No data
EPSS Score
No data
KEV
Not listed
Ransomware
No reports
Public exploits
None found
Dark Web
Not detected

Timeline

02 Sept 2020, 02:22
Published
Vulnerability first disclosed
03 Jun 2026, 13:33
Last Modified
Vulnerability information updated

Description

linux, linux-aws, linux-kvm, linux-lts-xenial, linux-raspi2, linux-snapdragon vulnerability Wen Xu discovered that the XFS filesystem implementation in the Linux kernel did not properly validate meta-data information. An attacker could use this to construct a malicious xfs image that, when mounted, could cause a denial of service (system crash).

Affected Systems

  • ubuntulinux

    < 4.4.0-189.219

  • ubuntulinux-aws

    < 4.4.0-1077.81 | < 4.4.0-1113.126

  • ubuntulinux-kvm

    < 4.4.0-1079.86

  • ubuntulinux-lts-xenial

    < 4.4.0-189.219~14.04.1

  • ubuntulinux-raspi2

    < 4.4.0-1138.147

  • ubuntulinux-snapdragon

    < 4.4.0-1142.151

References (2)