Linux Kernel EXT4 Filesystem Bit Handling Vulnerability

Vulnerability

A vulnerability in the Linux kernel's EXT4 filesystem has been addressed, concerning the improper handling of the EXT4_FC_REPLAY bit in the superblock's state. This bit, which indicates an ongoing replay of the fast commit journal, was mistakenly included in a way that could be exploited by a maliciously corrupted superblock. Such exploitation could bypass certain sanity checks and trigger a critical error in the filesystem's extent caching mechanism. The vulnerability arose because the superblock information was not correctly initialized, leading to potential inconsistencies during journal replay operations.

Impact

Exploitation of this vulnerability could cause a critical error in the EXT4 filesystem's extent caching, potentially leading to filesystem corruption or instability.

Remediation

The vulnerability has been fixed in the official Linux kernel repositories. Users should upgrade to the latest stable version of the Linux kernel to apply this fix.

Added: Jun 9, 2025, 7:46 PM
Updated: Jun 9, 2025, 7:46 PM

Vulnerability Rating

Custom Algorithm
spread
9.0
impact
2.5
exploitability
4.0
remediation
0.0
relevance
0.0
threat
3.2
urgency
2.9
incentive
1.7

Our algorithm analyzes dozens of metrics to generate these 8 key vulnerability categories, which are then combined to calculate the overall risk score.