CVE-2014-8172: Linux Kernel
Medium severity, CVSS 4.9. EPSS: 0.4% chance of exploitation in the next 30 days.
The filesystem implementation in the Linux kernel before 3.13 performs certain operations on lists of files with an inappropriate locking approach, which allows local users to cause a denial of service (soft lockup or system crash) via unspecified use of Asynchronous I/O (AIO) operations.
Affected products
- Linux Linux Kernel: up to and including 3.12.17
Published 2015-03-16. Last modified 2026-06-17.