Linux kernel is vulnerable to a heap-based buffer overflow in the fs/ext4/xattr.c:ext4_xattr_set_entry() function. An attacker could exploit this by operating on a mounted crafted ext4 image.
4.15.0-1022.22~16.04.14.15.0-1018.19~16.04.24.15.0-33.36~16.04.14.15.0-33.364.15.0-1020.204.15.0-1022.234.15.0-1018.194.15.0-1020.204.15.0-1017.204.15.0-1021.23Exploitability
AV:PAC:LPR:LUI:NScope
S:UImpact
C:HI:HA:HCVSS:3.1/AV:P/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H