In the Linux kernel, the following vulnerability has been resolved:
jfs: add check read-only before txBeginAnon() call
Added a read-only check before calling `txBeginAnon` in `extAlloc` and `extRecord`. This prevents modification attempts on a read-only mounted filesystem, avoiding potential errors or crashes.
Call trace: txBeginAnon+0xac/0x154 extAlloc+0xe8/0xdec fs/jfs/jfs_extent.c:78 jfs_get_block+0x340/0xb98 fs/jfs/inode.c:248 __block_write_begin_int+0x580/0x166c fs/buffer.c:2128 __block_write_begin fs/buffer.c:2177 [inline] block_write_begin+0x98/0x11c fs/buffer.c:2236 jfs_write_begin+0x44/0x88 fs/jfs/inode.c:299
CVSS Details
- CVSS 3.1 Base Score: 5.5
- CVSS 3.1 Vector: (CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:N/I:N/A:H)
Covered by Rapid7
| Product | Vendor Advisory | Solution File | Added | Published |
|---|---|---|---|---|
| Debian | — | Upgrade linux | May 15, 2025 | Apr 16, 2025 |
| Redhat_linux | — | No solution exists | Jul 9, 2025 | Apr 16, 2025 |
| Ubuntu | — | Upgrade linux-image-oracleUpgrade linux-image-gcpUpgrade linux-image-6.14.0-22-genericUpgrade linux-image-oracle-64kUpgrade linux-image-aws-64kUpgrade linux-image-6.14.0-1007-awsUpgrade linux-image-6.14.0-1004-realtimeUpgrade linux-image-genericUpgrade linux-image-azureUpgrade linux-image-6.14.0-1007-raspiUpgrade linux-image-6.14.0-1008-gcpUpgrade linux-image-6.14.0-22-generic-64kUpgrade linux-image-6.14.0-1007-oracle-64kUpgrade linux-image-realtimeUpgrade linux-image-6.14.0-1007-azure-fdeUpgrade linux-image-6.14.0-1007-azureUpgrade linux-image-6.14.0-1007-oracleUpgrade linux-image-raspiUpgrade linux-image-6.14.0-1008-gcp-64kUpgrade linux-image-gcp-64kUpgrade linux-image-azure-fdeUpgrade linux-image-6.14.0-1007-aws-64kUpgrade linux-image-awsUpgrade linux-image-generic-64k | Jun 26, 2025 | Apr 16, 2025 |
| Vmware Photon_os | — | Use 'tdnf update' to upgrade all packages to the latest version. | Sep 21, 2026 | Apr 16, 2025 |
Prioritise with Active Threat Intelligence
With curated Threat Intelligence, you can see which vulnerabilities truly put you at risk, prioritize what matters most, and act before attackers do.
Explore Intelligence Hub