USN-4486-1
Advisory lineage Upstream: 2 Downstream: 0
Upstream
Published: 02 Sept 2020, 02:22
Last modified:03 Jun 2026, 13:33
Vulnerability Summary
Overall Risk (default)
minimal
0/100 CVSS Score
No data
EPSS Score
No data
KEV
Not listed
Ransomware
No reports
Public exploits
None found
Dark Web
Not detected
Timeline
02 Sept 2020, 02:22
Published
Vulnerability first disclosed
03 Jun 2026, 13:33
Last Modified
Vulnerability information updated
Description
linux, linux-aws, linux-kvm, linux-lts-xenial, linux-raspi2, linux-snapdragon vulnerability Wen Xu discovered that the XFS filesystem implementation in the Linux kernel did not properly validate meta-data information. An attacker could use this to construct a malicious xfs image that, when mounted, could cause a denial of service (system crash).
Affected Systems
- ubuntu•linux
< 4.4.0-189.219
- ubuntu•linux-aws
< 4.4.0-1077.81 | < 4.4.0-1113.126
- ubuntu•linux-kvm
< 4.4.0-1079.86
- ubuntu•linux-lts-xenial
< 4.4.0-189.219~14.04.1
- ubuntu•linux-raspi2
< 4.4.0-1138.147
- ubuntu•linux-snapdragon
< 4.4.0-1142.151