Description: NULL pointer dereference in xfs_trans_binval() when mounting and operating a crafted xfs image References: https://bugzilla.kernel.org/show_bug.cgi?id=199969 https://git.kernel.org/pub/scm/fs/xfs/xfs-linux.git/commit/?h=for-next&id=bb3d48dcf86a97dc25fe9fc2c11938e19cb4399a Notes: Bugs: upstream: released (4.18-rc1) [bb3d48dcf86a97dc25fe9fc2c11938e19cb4399a] 4.19-upstream-stable: N/A "Fixed before branch point" 4.9-upstream-stable: released (4.9.233) [beff051fa566f6ed93da74171b30fb049038b23d] 3.16-upstream-stable: released (3.16.58) [991ec538e6683859b065467b8406c7e57526e212] sid: released (4.17.14-1) 4.19-buster-security: N/A "Fixed before branch point" 4.9-stretch-security: released (4.9.210-1) [bugfix/all/xfs-don-t-call-xfs_da_shrink_inode-with-null-bp.patch] 3.16-jessie-security: released (3.16.59-1)