Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

debian логотип

CVE-2017-18257

Опубликовано: 04 апр. 2018
Источник: debian
EPSS Низкий

Описание

The __get_data_block function in fs/f2fs/data.c in the Linux kernel before 4.11 allows local users to cause a denial of service (integer overflow and loop) via crafted use of the open and fallocate system calls with an FS_IOC_FIEMAP ioctl.

Пакеты

ПакетСтатусВерсия исправленияРелизТип
linuxfixed4.11.6-1package
linuxnot-affectedjessiepackage
linuxnot-affectedwheezypackage

Примечания

  • Fixed by: https://git.kernel.org/linus/b86e33075ed1909d8002745b56ecf73b833db143

EPSS

Процентиль: 30%
0.00111
Низкий

Связанные уязвимости

CVSS3: 5.5
ubuntu
почти 8 лет назад

The __get_data_block function in fs/f2fs/data.c in the Linux kernel before 4.11 allows local users to cause a denial of service (integer overflow and loop) via crafted use of the open and fallocate system calls with an FS_IOC_FIEMAP ioctl.

CVSS3: 3.3
redhat
около 9 лет назад

The __get_data_block function in fs/f2fs/data.c in the Linux kernel before 4.11 allows local users to cause a denial of service (integer overflow and loop) via crafted use of the open and fallocate system calls with an FS_IOC_FIEMAP ioctl.

CVSS3: 5.5
nvd
почти 8 лет назад

The __get_data_block function in fs/f2fs/data.c in the Linux kernel before 4.11 allows local users to cause a denial of service (integer overflow and loop) via crafted use of the open and fallocate system calls with an FS_IOC_FIEMAP ioctl.

CVSS3: 5.5
github
больше 3 лет назад

The __get_data_block function in fs/f2fs/data.c in the Linux kernel before 4.11 allows local users to cause a denial of service (integer overflow and loop) via crafted use of the open and fallocate system calls with an FS_IOC_FIEMAP ioctl.

suse-cvrf
почти 8 лет назад

Security update for the Linux Kernel

EPSS

Процентиль: 30%
0.00111
Низкий