5.5
CVSSv3

CVE-2017-18204

Published: 27/02/2018 Updated: 03/10/2019
CVSS v2 Base Score: 2.1 | Impact Score: 2.9 | Exploitability Score: 3.9
CVSS v3 Base Score: 5.5 | Impact Score: 3.6 | Exploitability Score: 1.8
VMScore: 188
Vector: AV:L/AC:L/Au:N/C:N/I:N/A:P

Vulnerability Summary

The ocfs2_setattr function in fs/ocfs2/file.c in the Linux kernel prior to 4.14.2 allows local users to cause a denial of service (deadlock) via DIO requests.

Vulnerability Trend

Vulnerable Product Search on Vulmon Subscribe to Product

linux linux kernel

Vendor Advisories

Several security issues were fixed in the Linux kernel ...
Several security issues were fixed in the Linux kernel ...
Several security issues were fixed in the Linux kernel ...
Several security issues were addressed in the Linux kernel ...
Several security issues were fixed in the Linux kernel ...
Several security issues were addressed in the Linux kernel ...
The Linux kernel, before version 4142, is vulnerable to a deadlock caused by fs/ocfs2/filec:ocfs2_setattr(), as the function does not wait for DIO requests before locking the inode This can be exploited by local users to cause a subsequent denial of service ...