Back

HIGH

kernel: integer signedness error in the btrfs_ioctl_space_info function could lead to a DoS

Published Feb 20, 2020

Description

Integer signedness error in the btrfs_ioctl_space_info function in the Linux kernel 2.6.37 allows local users to cause a denial of service (heap-based buffer overflow) or possibly have unspecified other impact via a crafted slot value.

Affected products

Remediation

Red Hat statement

Not vulnerable. This issue did not affect the versions of Linux kernel as shipped with Red Hat Enterprise Linux 4, 5, 6, or Red Hat Enterprise MRG as they did not backport the upstream commit bf5fc093c that introduced this issue.

Red Hat mitigation

As the BTRFS module will be auto-loaded when required, its use can be disabled by preventing the module from loading with the following instructions: # echo "install btrfs /bin/true" >> /etc/modprobe.d/disable-btrfs.conf The system will need to be restarted if the BTRFS modules are loaded, it may be possible to unload them. In most circumstances, the BTRFS kernel modules will be unable to be unloaded while any BTRFS filesystems are mounted or in use. If the system requires this module to work correctly, this mitigation may not be suitable. If you need further assistance, see KCS article https://access.redhat.com/solutions/41278 or contact Red Hat Global Support Services.

Metrics

References (9)

Change history (0)

No recorded changes yet.

Sources
CVE.org / MITRE
Status PUBLISHED
Assigner redhat
Published Feb 20, 2020
Updated Aug 6, 2024
Reserved Jan 31, 2011
NVD
Status Modified
Modified Jun 16, 2026
Red Hat
Severity Low
Public date Feb 20, 2020