CVE-2017-18200: Linux Kernel

Medium severity, CVSS 5.5. EPSS: 0.3% chance of exploitation in the next 30 days.

The f2fs implementation in the Linux kernel before 4.14 mishandles reference counts associated with f2fs_wait_discard_bios calls, which allows local users to cause a denial of service (BUG), as demonstrated by fstrim.

Affected products

  • Linux Linux Kernel: up to and including 4.13

Published 2018-02-26. Last modified 2026-06-17.