The XFSISREALTIMEINODE macro in fs/xfs/xfslinux.h in the Linux kernel before 4.13.2 does not verify that a filesystem has a realtime device, which allows local users to cause a denial of service (NULL pointer dereference and OOPS) via vectors related to setting an RHINHERIT flag on a directory.
[
{
"signature_version": "v1",
"target": {
"file": "fs/xfs/xfs_linux.h"
},
"source": "https://git.kernel.org/pub/scm/linux/kernel/git/torvalds/linux.git@b31ff3cdf540110da4572e3e29bd172087af65cc",
"signature_type": "Line",
"id": "CVE-2017-14340-cdb11b61",
"deprecated": false,
"digest": {
"threshold": 0.9,
"line_hashes": [
"44747651701481968385690220414125648267",
"15703094067294068732165784902312880059",
"58860049311528714980670963769644623282"
]
}
}
]
"https://storage.googleapis.com/osv-test-cve-osv-conversion/osv-output/CVE-2017-14340.json"
[
{
"signature_version": "v1",
"target": {
"file": "fs/xfs/xfs_linux.h"
},
"source": "https://github.com/torvalds/linux/commit/b31ff3cdf540110da4572e3e29bd172087af65cc",
"signature_type": "Line",
"id": "CVE-2017-14340-74b8da33",
"deprecated": false,
"digest": {
"threshold": 0.9,
"line_hashes": [
"44747651701481968385690220414125648267",
"15703094067294068732165784902312880059",
"58860049311528714980670963769644623282"
]
}
}
]
"https://storage.googleapis.com/osv-test-cve-osv-conversion/osv-output/CVE-2017-14340.json"