The sanity_check_raw_super function in fs/f2fs/super.c in the Linux kernel before 4.11.1 does not validate the segment count, which allows local users to gain privileges via unspecified vectors.
No PoCs from references.
- https://github.com/thdusdl1219/CVE-Study