Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

redhat логотип

CVE-2009-4308

Опубликовано: 27 июл. 2009
Источник: redhat
CVSS2: 6.2
EPSS Низкий

Описание

The ext4_decode_error function in fs/ext4/super.c in the ext4 filesystem in the Linux kernel before 2.6.32 allows user-assisted remote attackers to cause a denial of service (NULL pointer dereference), and possibly have unspecified other impact, via a crafted read-only filesystem that lacks a journal.

Отчет

The Linux kernel packages as shipped with Red Hat Enterprise Linux 3, 4 and Red Hat Enterprise MRG do not include support for EXT4, and therefore are not affected by this issue.

Дополнительная информация

Статус:

Moderate
Дефект:
CWE-476
https://bugzilla.redhat.com/show_bug.cgi?id=547255kernel: ext4: Avoid null pointer dereference when decoding EROFS w/o a journal

EPSS

Процентиль: 88%
0.03871
Низкий

6.2 Medium

CVSS2

Связанные уязвимости

ubuntu
больше 15 лет назад

The ext4_decode_error function in fs/ext4/super.c in the ext4 filesystem in the Linux kernel before 2.6.32 allows user-assisted remote attackers to cause a denial of service (NULL pointer dereference), and possibly have unspecified other impact, via a crafted read-only filesystem that lacks a journal.

nvd
больше 15 лет назад

The ext4_decode_error function in fs/ext4/super.c in the ext4 filesystem in the Linux kernel before 2.6.32 allows user-assisted remote attackers to cause a denial of service (NULL pointer dereference), and possibly have unspecified other impact, via a crafted read-only filesystem that lacks a journal.

debian
больше 15 лет назад

The ext4_decode_error function in fs/ext4/super.c in the ext4 filesyst ...

github
больше 3 лет назад

The ext4_decode_error function in fs/ext4/super.c in the ext4 filesystem in the Linux kernel before 2.6.32 allows user-assisted remote attackers to cause a denial of service (NULL pointer dereference), and possibly have unspecified other impact, via a crafted read-only filesystem that lacks a journal.

oracle-oval
больше 15 лет назад

ELSA-2010-0147: kernel security and bug fix update (IMPORTANT)

EPSS

Процентиль: 88%
0.03871
Низкий

6.2 Medium

CVSS2