High severity7.8NVD Advisory· Published Aug 19, 2017· Updated May 13, 2026
CVE-2017-10663
CVE-2017-10663
Description
The sanity_check_ckpt function in fs/f2fs/super.c in the Linux kernel before 4.12.4 does not validate the blkoff and segno arrays, which allows local users to gain privileges via unspecified vectors.
Affected products
1Patches
0No patches discovered yet.
Vulnerability mechanics
AI mechanics synthesis has not run for this CVE yet.
References
6- git.kernel.org/cgit/linux/kernel/git/torvalds/linux.git/commit/nvdMailing ListPatchThird Party Advisory
- bugzilla.redhat.com/show_bug.cginvdIssue TrackingPatch
- github.com/torvalds/linux/commit/15d3042a937c13f5d9244241c7a9c8416ff6e82anvdPatchThird Party Advisory
- www.kernel.org/pub/linux/kernel/v4.x/ChangeLog-4.12.4nvdMailing ListThird Party Advisory
- www.securityfocus.com/bid/100215nvdThird Party AdvisoryVDB Entry
- source.android.com/security/bulletin/2017-08-01nvdThird Party Advisory
News mentions
0No linked articles in our index yet.