In the Linux kernel, the following vulnerability has been resolved: ntfs: reject unprivileged writes to reserved $LX* xattrs Reject setxattr of the reserved $LXUID, $LXGID, $LXMOD and $LXDEV names from userspace unless the caller has CAP_SYS_ADMIN.
https://git.kernel.org/stable/c/ea6a67ef64451d2da298f15baa35865b4bb6372a
https://git.kernel.org/stable/c/86f46508016bc1f2bffb3a52dc2664f942fb9802