CVE-2016-10905: Linux Kernel

High severity, CVSS 7.8. EPSS: 0.6% chance of exploitation in the next 30 days.

An issue was discovered in fs/gfs2/rgrp.c in the Linux kernel before 4.8. A use-after-free is caused by the functions gfs2_clear_rgrpd and read_rindex_entry.

Affected products

  • Linux Linux Kernel: before 4.8 (fixed in 4.8); from 3.4, before 3.16.74 (fixed in 3.16.74); from 3.17, before 4.4.191 (fixed in 4.4.191); from 4.5, before 4.8 (fixed in 4.8)

Published 2019-08-19. Last modified 2026-06-17.