In the Linux kernel, the following vulnerability has been resolved:
f2fs: fix to avoid f2fs_bug_on() in dec_valid_node_count()
As Yanming reported in bugzilla:
https://bugzilla.kernel.org/show_bug.cgi?id=215897
I have encountered a bug in F2FS file system in kernel v5.17.
The kernel should enable CONFIG_KASAN=y and CONFIG_KASAN_INLINE=y. You can reproduce the bug by running the following commands:
The kernel message is shown below:
kernel BUG at fs/f2fs/f2fs.h:2511! Call Trace: f2fs_remove_inode_page+0x2a2/0x830 f2fs_evict_inode+0x9b7/0x1510 evict+0x282/0x4e0 do_unlinkat+0x33a/0x540 __x64_sys_unlinkat+0x8e/0xd0 do_syscall_64+0x3b/0x90 entry_SYSCALL_64_after_hwframe+0x44/0xae
The root cause is: .total_valid_block_count or .total_valid_node_count could fuzzed to zero, then once dec_valid_node_count() was called, it will cause BUG_ON(), this patch fixes to print warning info and set SBI_NEED_FSCK into CP instead of panic.
CVSS Details
- CVSS 3.1 Base Score: 5.5
- CVSS 3.1 Vector: (CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:N/I:N/A:H)
Covered by Rapid7
| Product | Vendor Advisory | Solution File | Added | Published |
|---|---|---|---|---|
| Debian | — | Upgrade linux | Feb 27, 2025 | Feb 27, 2025 |
| Ubuntu | — | Upgrade linux-oracle-5.4Upgrade linux-gcpUpgrade linux-bluefieldUpgrade linux-awsUpgrade linux-raspiUpgrade linuxUpgrade linux-raspi-5.4Upgrade linux-iotUpgrade linux-realtimeUpgrade linux-lowlatency-hwe-5.15Upgrade linux-aws-5.15Upgrade linux-ibm-5.4Upgrade linux-kvmUpgrade linux-azure-5.15Upgrade linux-gcp-5.15Upgrade linux-riscv-5.15Upgrade linux-ibmUpgrade linux-aws-fipsUpgrade linux-azure-fde-5.15Upgrade linux-azure-5.4Upgrade linux-oracleUpgrade linux-oracle-5.15Upgrade linux-aws-5.4Upgrade linux-hwe-5.15Upgrade linux-nvidiaUpgrade linux-fipsUpgrade linux-gkeUpgrade linux-intel-iotgUpgrade linux-intel-iotg-5.15Upgrade linux-gcp-5.4Upgrade linux-azure-fipsUpgrade linux-lowlatencyUpgrade linux-hwe-5.4Upgrade linux-gkeopUpgrade linux-azureUpgrade linux-gcp-fips | Mar 3, 2025 | Feb 26, 2025 |
| Vmware Photon_os | — | Use 'tdnf update' to upgrade all packages to the latest version. | May 27, 2026 | Feb 26, 2025 |
Prioritise with Active Threat Intelligence
With curated Threat Intelligence, you can see which vulnerabilities truly put you at risk, prioritize what matters most, and act before attackers do.
Explore Intelligence Hub