The vendor explicitly states that these products are not affected by this CVE.
- kernel as a component of Red Hat Enterprise Linux 10
- kernel-64k as a component of Red Hat Enterprise Linux 10
- kernel-64k-core as a component of Red Hat Enterprise Linux 10
- kernel-64k-debug as a component of Red Hat Enterprise Linux 10
- kernel-64k-debug-core as a component of Red Hat Enterprise Linux 10
- kernel-64k-debug-devel as a component of Red Hat Enterprise Linux 10
- kernel-64k-debug-devel-matched as a component of Red Hat Enterprise Linux 10
- kernel-64k-debug-modules as a component of Red Hat Enterprise Linux 10
- kernel-64k-debug-modules-core as a component of Red Hat Enterprise Linux 10
- kernel-64k-debug-modules-extra as a component of Red Hat Enterprise Linux 10
- kernel-64k-devel as a component of Red Hat Enterprise Linux 10
- kernel-64k-devel-matched as a component of Red Hat Enterprise Linux 10
- Summary
- A flaw was found in the Linux kernel's F2FS (Flash-Friendly File System) component. A local attacker could exploit a use-after-free vulnerability in the `recover_data` function by mounting a specially crafted F2FS image with a corrupted Summary Segment Area (SSA) table. This out-of-range access could lead to a system crash (denial of service) or potentially arbitrary code execution, compromising the system's integrity and confidentiality.
- Remediation
- No remediation text is recorded.
