Linux Kernel F2FS Negative i_nlink Handling Vulnerability

Vulnerability

A vulnerability in the Linux kernel's F2FS file system has been addressed, which was causing a kernel warning related to negative i_nlink values from a corrupted image. This issue was observed in version 6.14.0-12627-g94d471a4f428.

Impact

The vulnerability could lead to kernel warnings and potential instability in the file system handling.

Reproduction

The vulnerability can be reproduced by using a corrupted F2FS image that introduces negative i_nlink values. This triggers a warning in the kernel about the invalid link count, indicating a potential issue with how the file system is managing inode links.

Added: Jul 4, 2025, 2:49 PM
Updated: Jul 4, 2025, 2:49 PM

Vulnerability Rating

Custom Algorithm
spread
9.0
impact
2.5
exploitability
4.3
remediation
0.0
relevance
0.2
threat
4.8
urgency
2.9
incentive
1.7

Our algorithm analyzes dozens of metrics to generate these 8 key vulnerability categories, which are then combined to calculate the overall risk score.