A flaw was found in the Linux kernel's ext4 filesystem. A local user can cause an out-of-bounds write in jbd2journaldirty_metadata(), a denial of service, and a system crash by mounting and operating on a crafted ext4 filesystem image.
"https://storage.googleapis.com/osv-test-cve-osv-conversion/osv-output/CVE-2018-10883.json"
[
{
"target": {
"file": "fs/ext4/ext4.h"
},
"digest": {
"line_hashes": [
"233085780273812737718107874144801903017",
"187078644615943984562828088934017676170",
"324957208477898816983488729543413229742",
"320055824807714710030453052483311950141",
"13880585924166837488152185439201543710",
"30385317121471278946074722202098197747"
],
"threshold": 0.9
},
"signature_type": "Line",
"id": "CVE-2018-10883-21975c93",
"source": "https://git.kernel.org/pub/scm/linux/kernel/git/torvalds/linux.git@8bc1379b82b8e809eef77a9fedbb75c6c297be19",
"deprecated": false,
"signature_version": "v1"
},
{
"target": {
"file": "fs/ext4/inline.c"
},
"digest": {
"line_hashes": [
"13793893303274874404186523655264847719",
"163841345070282288138140860922295376727",
"68302215105809065861689536006754290904",
"302738163183306791072712481284030671876",
"300754818274104696496217100648285783663",
"2553424655721862809078088512723651083",
"197525883078775835224356454723140213460",
"154349553750416272296086562575027067610",
"145664673674066924911453930330355901413",
"70836968979291670965321459240589083967",
"150789893979504237138889426467549034052",
"330493446494439317513349252404128347270",
"93044119187154653227045592263967867905",
"110748094791911114859272415208184245006",
"624749358110798394361616054424325547",
"16465270641858440594211974997806096984",
"247629963672729417741299221166898786996",
"152536487844037155915278776354144237241",
"207178349110495355199780937030181517293",
"336429856375769676617030544366697818226",
"128591540987782557622689517343728744608",
"311369002813699814107988221268579990079",
"301690729491479828997262719953601607342",
"240024096526761051259352375521209254615",
"311612015724040725986096166052806618384",
"72238614288822761734528381628794427334",
"60808820776553746377904592341021797352",
"311709111690206774850991135766931052799",
"313356390481514841937206248196630951383",
"269041368106091485006916327989942059123",
"313128834135678505408364336124120172765",
"268847027717103580994541856889302450418",
"84394351737831327706137815641665541748",
"259197591672411050401831699192803820634",
"157898943701272340300770437460490864421",
"269214579928503244948469963729074449950"
],
"threshold": 0.9
},
"signature_type": "Line",
"id": "CVE-2018-10883-41b4dcc7",
"source": "https://git.kernel.org/pub/scm/linux/kernel/git/torvalds/linux.git@8bc1379b82b8e809eef77a9fedbb75c6c297be19",
"deprecated": false,
"signature_version": "v1"
},
{
"target": {
"file": "fs/ext4/xattr.c",
"function": "ext4_xattr_ibody_inline_set"
},
"digest": {
"length": 891.0,
"function_hash": "175976546872251417913444657634961502518"
},
"signature_type": "Function",
"id": "CVE-2018-10883-7336bf86",
"source": "https://git.kernel.org/pub/scm/linux/kernel/git/torvalds/linux.git@8bc1379b82b8e809eef77a9fedbb75c6c297be19",
"deprecated": false,
"signature_version": "v1"
},
{
"target": {
"file": "fs/ext4/inline.c",
"function": "ext4_da_write_inline_data_begin"
},
"digest": {
"length": 1384.0,
"function_hash": "293794837482046420697231874777572132428"
},
"signature_type": "Function",
"id": "CVE-2018-10883-8621064a",
"source": "https://git.kernel.org/pub/scm/linux/kernel/git/torvalds/linux.git@8bc1379b82b8e809eef77a9fedbb75c6c297be19",
"deprecated": false,
"signature_version": "v1"
},
{
"target": {
"file": "fs/ext4/inline.c",
"function": "ext4_try_to_evict_inline_data"
},
"digest": {
"length": 493.0,
"function_hash": "301305360827463244514272327124350024020"
},
"signature_type": "Function",
"id": "CVE-2018-10883-9a18cffb",
"source": "https://git.kernel.org/pub/scm/linux/kernel/git/torvalds/linux.git@8bc1379b82b8e809eef77a9fedbb75c6c297be19",
"deprecated": false,
"signature_version": "v1"
},
{
"target": {
"file": "fs/jbd2/transaction.c",
"function": "jbd2_journal_dirty_metadata"
},
"digest": {
"length": 2695.0,
"function_hash": "272429099031414448037239403748223925028"
},
"signature_type": "Function",
"id": "CVE-2018-10883-c31f61a2",
"source": "https://git.kernel.org/pub/scm/linux/kernel/git/torvalds/linux.git@e09463f220ca9a1a1ecfda84fcda658f99a1f12a",
"deprecated": false,
"signature_version": "v1"
},
{
"target": {
"file": "fs/ext4/xattr.c"
},
"digest": {
"line_hashes": [
"20167569701269110198679413784380622052",
"185987473919149189916497316094433496900",
"19449044704018144262478044734079276735",
"91502599425582228998970399209869881123",
"307362065818964216317081283198868551108",
"247830973363813568520705998125364738670",
"284587928340878127929936210252894971442",
"89617643806854152018852347647339408283",
"132559211588898863607352845925589912413",
"256321183518428493103970940038873052464",
"159530583954515619725370341396087968557",
"105506256532816798725597532156476935441",
"310176209826636425170910584891871689666",
"89703325029247827723945210130855945423",
"239490179093844120316924862388215239674",
"300394734543566261771441247488054473042",
"117411397033308978074643833343762036968",
"14113538881332881556509852003662805271",
"86012737292886068508236449494282820109",
"188023801999886744687966115532392881730"
],
"threshold": 0.9
},
"signature_type": "Line",
"id": "CVE-2018-10883-e2cd3b37",
"source": "https://git.kernel.org/pub/scm/linux/kernel/git/torvalds/linux.git@8bc1379b82b8e809eef77a9fedbb75c6c297be19",
"deprecated": false,
"signature_version": "v1"
},
{
"target": {
"file": "fs/jbd2/transaction.c"
},
"digest": {
"line_hashes": [
"74761795778547930566917813860130109074",
"60322540319384413523315366012959833647",
"284438372858346332744679272024932677869",
"246750953741505428356985565567225903287",
"151890875588582939850705559843013677058",
"262047433257021078340568059659197149574",
"42898357787268084840079713550290525530",
"230540739907467543937059734000108173200",
"242664345323255969161274287155748916105",
"321892893195742831055592522312799921079",
"282309306785468122206594129849293472113",
"193487741691375018257096549618151484713"
],
"threshold": 0.9
},
"signature_type": "Line",
"id": "CVE-2018-10883-fae7a9fd",
"source": "https://git.kernel.org/pub/scm/linux/kernel/git/torvalds/linux.git@e09463f220ca9a1a1ecfda84fcda658f99a1f12a",
"deprecated": false,
"signature_version": "v1"
}
]