Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

redhat логотип

CVE-2022-1304

Опубликовано: 24 мар. 2022
Источник: redhat
CVSS3: 5.8
EPSS Низкий

Описание

An out-of-bounds read/write vulnerability was found in e2fsprogs 1.46.5. This issue leads to a segmentation fault and possibly arbitrary code execution via a specially crafted filesystem.

An out-of-bounds read/write vulnerability was found in e2fsprogs. This issue leads to a segmentation fault and possibly arbitrary code execution via a specially crafted filesystem.

Затронутые пакеты

ПлатформаПакетСостояниеРекомендацияРелиз
Red Hat Enterprise Linux 6e2fsprogsOut of support scope
Red Hat Enterprise Linux 7e2fsprogsOut of support scope
Red Hat Enterprise Linux 8e2fsprogsFixedRHSA-2022:772008.11.2022
Red Hat Enterprise Linux 9e2fsprogsFixedRHSA-2022:836115.11.2022
Red Hat Enterprise Linux 9e2fsprogsFixedRHSA-2022:836115.11.2022

Показывать по

Дополнительная информация

Статус:

Moderate
Дефект:
CWE-125
Дефект:
CWE-787
https://bugzilla.redhat.com/show_bug.cgi?id=2069726e2fsprogs: out-of-bounds read/write via crafted filesystem

EPSS

Процентиль: 65%
0.00505
Низкий

5.8 Medium

CVSS3

Связанные уязвимости

CVSS3: 7.8
ubuntu
около 3 лет назад

An out-of-bounds read/write vulnerability was found in e2fsprogs 1.46.5. This issue leads to a segmentation fault and possibly arbitrary code execution via a specially crafted filesystem.

CVSS3: 7.8
nvd
около 3 лет назад

An out-of-bounds read/write vulnerability was found in e2fsprogs 1.46.5. This issue leads to a segmentation fault and possibly arbitrary code execution via a specially crafted filesystem.

CVSS3: 7.8
msrc
около 3 лет назад

Описание отсутствует

CVSS3: 7.8
debian
около 3 лет назад

An out-of-bounds read/write vulnerability was found in e2fsprogs 1.46. ...

suse-cvrf
около 3 лет назад

Security update for e2fsprogs

EPSS

Процентиль: 65%
0.00505
Низкий

5.8 Medium

CVSS3