Описание
Multiple buffer underflows in the XFS implementation in the Linux kernel through 3.12.1 allow local users to cause a denial of service (memory corruption) or possibly have unspecified other impact by leveraging the CAP_SYS_ADMIN capability for a (1) XFS_IOC_ATTRLIST_BY_HANDLE or (2) XFS_IOC_ATTRLIST_BY_HANDLE_32 ioctl call with a crafted length value, related to the xfs_attrlist_by_handle function in fs/xfs/xfs_ioctl.c and the xfs_compat_attrlist_by_handle function in fs/xfs/xfs_ioctl32.c.
| Релиз | Статус | Примечание | 
|---|---|---|
| devel | not-affected  | 4.10.0-19.21 | 
| esm-infra-legacy/trusty | not-affected  | 3.13.0-1.16 | 
| esm-infra/xenial | not-affected  | 4.2.0-16.19 | 
| lucid | released  | 2.6.32-57.119 | 
| precise | released  | 3.2.0-59.90 | 
| precise/esm | released  | 3.2.0-59.90 | 
| quantal | released  | 3.5.0-47.71 | 
| raring | ignored  | end of life | 
| saucy | released  | 3.11.0-17.31 | 
| trusty | not-affected  | 3.13.0-1.16 | 
Показывать по
| Релиз | Статус | Примечание | 
|---|---|---|
| devel | DNE  | |
| esm-infra-legacy/trusty | DNE  | |
| lucid | DNE  | |
| precise | released  | 3.2.0-1630.42 | 
| precise/esm | DNE  | precise was released [3.2.0-1630.42] | 
| quantal | released  | 3.5.0-1628.37 | 
| raring | DNE  | |
| saucy | DNE  | |
| trusty | DNE  | |
| trusty/esm | DNE  | 
Показывать по
| Релиз | Статус | Примечание | 
|---|---|---|
| devel | DNE  | |
| esm-infra-legacy/trusty | not-affected  | 4.4.0-1002.2 | 
| esm-infra/xenial | not-affected  | 4.4.0-1001.10 | 
| precise | DNE  | |
| precise/esm | DNE  | |
| trusty | not-affected  | 4.4.0-1002.2 | 
| trusty/esm | not-affected  | 4.4.0-1002.2 | 
| upstream | released  | 3.13~rc4 | 
| vivid/stable-phone-overlay | DNE  | |
| vivid/ubuntu-core | DNE  | 
Показывать по
| Релиз | Статус | Примечание | 
|---|---|---|
| devel | DNE  | |
| esm-infra-legacy/trusty | DNE  | |
| lucid | released  | 2.6.32-362.75 | 
| precise | DNE  | |
| precise/esm | DNE  | |
| quantal | DNE  | |
| raring | DNE  | |
| saucy | DNE  | |
| trusty | DNE  | |
| trusty/esm | DNE  | 
Показывать по
| Релиз | Статус | Примечание | 
|---|---|---|
| devel | DNE  | |
| esm-apps/xenial | DNE  | |
| esm-infra-legacy/trusty | DNE  | trusty/esm was ignored [end of life, was needed] | 
| lucid | DNE  | |
| precise | DNE  | |
| precise/esm | DNE  | |
| quantal | DNE  | |
| saucy | DNE  | |
| trusty | ignored  | end of standard support, was needed | 
| trusty/esm | ignored  | end of life, was needed | 
Показывать по
| Релиз | Статус | Примечание | 
|---|---|---|
| devel | DNE  | |
| esm-infra-legacy/trusty | DNE  | |
| lucid | ignored  | end of life | 
| precise | DNE  | |
| precise/esm | DNE  | |
| quantal | DNE  | |
| raring | DNE  | |
| saucy | DNE  | |
| trusty | DNE  | |
| trusty/esm | DNE  | 
Показывать по
| Релиз | Статус | Примечание | 
|---|---|---|
| devel | DNE  | |
| esm-infra-legacy/trusty | DNE  | |
| precise | DNE  | |
| precise/esm | DNE  | |
| trusty | DNE  | |
| trusty/esm | DNE  | |
| upstream | released  | 3.13~rc4 | 
| vivid/stable-phone-overlay | DNE  | |
| vivid/ubuntu-core | DNE  | |
| xenial | not-affected  | 4.4.0-1003.3 | 
Показывать по
| Релиз | Статус | Примечание | 
|---|---|---|
| devel | DNE  | |
| esm-apps/xenial | DNE  | |
| esm-infra-legacy/trusty | DNE  | trusty/esm was ignored [end of life, was needed] | 
| lucid | DNE  | |
| precise | DNE  | |
| precise/esm | DNE  | |
| quantal | DNE  | |
| saucy | ignored  | |
| trusty | ignored  | end of standard support, was needed | 
| trusty/esm | ignored  | end of life, was needed | 
Показывать по
| Релиз | Статус | Примечание | 
|---|---|---|
| devel | DNE  | |
| esm-infra-legacy/trusty | DNE  | trusty/esm was DNE [trusty was ignored [abandoned]] | 
| lucid | DNE  | |
| precise | DNE  | |
| precise/esm | DNE  | |
| quantal | DNE  | |
| saucy | ignored  | |
| trusty | ignored  | end of standard support | 
| trusty/esm | DNE  | trusty was ignored [abandoned] | 
| upstream | released  | 3.13~rc4 | 
Показывать по
| Релиз | Статус | Примечание | 
|---|---|---|
| devel | DNE  | |
| esm-infra-legacy/trusty | DNE  | |
| esm-infra/xenial | not-affected  | 4.8.0-36.36~16.04.1 | 
| precise | DNE  | |
| precise/esm | DNE  | |
| trusty | DNE  | |
| trusty/esm | DNE  | |
| upstream | released  | 3.13~rc4 | 
| vivid/stable-phone-overlay | DNE  | |
| vivid/ubuntu-core | DNE  | 
Показывать по
| Релиз | Статус | Примечание | 
|---|---|---|
| devel | DNE  | |
| esm-infra-legacy/trusty | DNE  | |
| esm-infra/xenial | not-affected  | 4.8.0-36.36~16.04.1 | 
| precise | DNE  | |
| precise/esm | DNE  | |
| trusty | DNE  | |
| trusty/esm | DNE  | |
| upstream | released  | 3.13~rc4 | 
| vivid/stable-phone-overlay | DNE  | |
| vivid/ubuntu-core | DNE  | 
Показывать по
| Релиз | Статус | Примечание | 
|---|---|---|
| devel | DNE  | |
| esm-infra-legacy/trusty | DNE  | |
| lucid | DNE  | |
| precise | ignored  | end of life | 
| precise/esm | DNE  | precise was ignored [abandoned] | 
| quantal | ignored  | end of life | 
| raring | DNE  | |
| saucy | DNE  | |
| trusty | DNE  | |
| trusty/esm | DNE  | 
Показывать по
| Релиз | Статус | Примечание | 
|---|---|---|
| devel | DNE  | |
| esm-infra-legacy/trusty | DNE  | |
| lucid | DNE  | |
| precise | ignored  | end of life | 
| precise/esm | DNE  | precise was ignored [abandoned] | 
| quantal | ignored  | end of life | 
| raring | DNE  | |
| saucy | DNE  | |
| trusty | DNE  | |
| trusty/esm | DNE  | 
Показывать по
| Релиз | Статус | Примечание | 
|---|---|---|
| devel | DNE  | |
| esm-infra-legacy/trusty | DNE  | |
| lucid | DNE  | |
| precise | ignored  | end of life | 
| precise/esm | DNE  | precise was ignored [abandoned] | 
| quantal | ignored  | end of life | 
| raring | DNE  | |
| saucy | DNE  | |
| trusty | DNE  | |
| trusty/esm | DNE  | 
Показывать по
| Релиз | Статус | Примечание | 
|---|---|---|
| devel | DNE  | |
| esm-infra-legacy/trusty | DNE  | |
| lucid | DNE  | |
| precise | released  | 3.5.0-47.71~precise1 | 
| precise/esm | DNE  | precise was released [3.5.0-47.71~precise1] | 
| quantal | DNE  | |
| raring | DNE  | |
| saucy | DNE  | |
| trusty | DNE  | |
| trusty/esm | DNE  | 
Показывать по
| Релиз | Статус | Примечание | 
|---|---|---|
| devel | DNE  | |
| esm-infra-legacy/trusty | DNE  | |
| lucid | DNE  | |
| precise | released  | 3.8.0-38.56~precise1 | 
| precise/esm | DNE  | precise was released [3.8.0-38.56~precise1] | 
| quantal | DNE  | |
| raring | DNE  | |
| saucy | DNE  | |
| trusty | DNE  | |
| trusty/esm | DNE  | 
Показывать по
| Релиз | Статус | Примечание | 
|---|---|---|
| devel | DNE  | |
| esm-infra-legacy/trusty | DNE  | |
| lucid | DNE  | |
| precise | released  | 3.11.0-17.31~precise1 | 
| precise/esm | DNE  | precise was released [3.11.0-17.31~precise1] | 
| quantal | DNE  | |
| raring | DNE  | |
| saucy | DNE  | |
| trusty | DNE  | |
| trusty/esm | DNE  | 
Показывать по
| Релиз | Статус | Примечание | 
|---|---|---|
| devel | DNE  | |
| esm-infra-legacy/trusty | DNE  | |
| lucid | DNE  | |
| precise | not-affected  | 3.13.0-24.46~precise1 | 
| precise/esm | not-affected  | 3.13.0-24.46~precise1 | 
| saucy | DNE  | |
| trusty | DNE  | |
| trusty/esm | DNE  | |
| upstream | released  | 3.13~rc4 | 
| utopic | DNE  | 
Показывать по
| Релиз | Статус | Примечание | 
|---|---|---|
| devel | DNE  | |
| esm-infra-legacy/trusty | DNE  | trusty/esm was DNE [trusty was not-affected [3.16.0-25.33~14.04.2]] | 
| lucid | DNE  | |
| precise | DNE  | |
| precise/esm | DNE  | |
| trusty | not-affected  | 3.16.0-25.33~14.04.2 | 
| trusty/esm | DNE  | trusty was not-affected [3.16.0-25.33~14.04.2] | 
| upstream | released  | 3.13~rc4 | 
| utopic | DNE  | |
| vivid | DNE  | 
Показывать по
| Релиз | Статус | Примечание | 
|---|---|---|
| devel | DNE  | |
| esm-infra-legacy/trusty | DNE  | trusty/esm was DNE [trusty was not-affected [3.19.0-18.18~14.04.1]] | 
| lucid | DNE  | |
| precise | DNE  | |
| precise/esm | DNE  | |
| trusty | not-affected  | 3.19.0-18.18~14.04.1 | 
| trusty/esm | DNE  | trusty was not-affected [3.19.0-18.18~14.04.1] | 
| upstream | released  | 3.13~rc4 | 
| utopic | DNE  | |
| vivid | DNE  | 
Показывать по
| Релиз | Статус | Примечание | 
|---|---|---|
| devel | DNE  | |
| esm-infra-legacy/trusty | DNE  | trusty/esm was DNE [trusty was not-affected [4.2.0-18.22~14.04.1]] | 
| precise | DNE  | |
| precise/esm | DNE  | |
| trusty | not-affected  | 4.2.0-18.22~14.04.1 | 
| trusty/esm | DNE  | trusty was not-affected [4.2.0-18.22~14.04.1] | 
| upstream | released  | 3.13~rc4 | 
| vivid | DNE  | |
| vivid/stable-phone-overlay | DNE  | |
| vivid/ubuntu-core | DNE  | 
Показывать по
| Релиз | Статус | Примечание | 
|---|---|---|
| devel | DNE  | |
| esm-infra-legacy/trusty | not-affected  | 4.4.0-13.29~14.04.1 | 
| precise | DNE  | |
| precise/esm | DNE  | |
| trusty | not-affected  | 4.4.0-13.29~14.04.1 | 
| trusty/esm | not-affected  | 4.4.0-13.29~14.04.1 | 
| upstream | released  | 3.13~rc4 | 
| vivid | DNE  | |
| vivid/stable-phone-overlay | DNE  | |
| vivid/ubuntu-core | DNE  | 
Показывать по
| Релиз | Статус | Примечание | 
|---|---|---|
| devel | DNE  | |
| esm-infra-legacy/trusty | DNE  | trusty/esm was DNE [trusty was ignored [abandoned]] | 
| lucid | DNE  | |
| precise | DNE  | |
| precise/esm | DNE  | |
| quantal | DNE  | |
| saucy | ignored  | |
| trusty | ignored  | end of standard support | 
| trusty/esm | DNE  | trusty was ignored [abandoned] | 
| upstream | released  | 3.13~rc4 | 
Показывать по
| Релиз | Статус | Примечание | 
|---|---|---|
| devel | DNE  | |
| esm-apps/xenial | DNE  | |
| esm-infra-legacy/trusty | DNE  | trusty/esm was ignored [end of life, was needed] | 
| lucid | DNE  | |
| precise | DNE  | |
| precise/esm | DNE  | |
| quantal | DNE  | |
| saucy | ignored  | |
| trusty | ignored  | end of standard support, was needed | 
| trusty/esm | ignored  | end of life, was needed | 
Показывать по
| Релиз | Статус | Примечание | 
|---|---|---|
| devel | DNE  | |
| esm-infra-legacy/trusty | DNE  | trusty/esm was ignored [end of life, was needed] | 
| lucid | DNE  | |
| precise | DNE  | |
| precise/esm | DNE  | |
| quantal | DNE  | |
| saucy | ignored  | |
| trusty | ignored  | end of standard support, was needed | 
| trusty/esm | ignored  | end of life, was needed | 
| upstream | released  | 3.13~rc4 | 
Показывать по
| Релиз | Статус | Примечание | 
|---|---|---|
| devel | DNE  | |
| esm-infra-legacy/trusty | DNE  | |
| lucid | ignored  | end of life | 
| precise | DNE  | |
| precise/esm | DNE  | |
| quantal | DNE  | |
| raring | DNE  | |
| saucy | DNE  | |
| trusty | DNE  | |
| trusty/esm | DNE  | 
Показывать по
| Релиз | Статус | Примечание | 
|---|---|---|
| devel | DNE  | |
| esm-infra-legacy/trusty | DNE  | |
| lucid | ignored  | end of life | 
| precise | ignored  | end of life | 
| precise/esm | DNE  | precise was ignored [abandoned] | 
| quantal | ignored  | end of life | 
| raring | DNE  | |
| saucy | DNE  | |
| trusty | DNE  | |
| trusty/esm | DNE  | 
Показывать по
| Релиз | Статус | Примечание | 
|---|---|---|
| devel | not-affected  | 4.10.0-1004.6 | 
| esm-infra-legacy/trusty | DNE  | |
| precise | DNE  | |
| precise/esm | DNE  | |
| trusty | DNE  | |
| trusty/esm | DNE  | |
| upstream | released  | 3.13~rc4 | 
| vivid | DNE  | |
| vivid/stable-phone-overlay | DNE  | |
| vivid/ubuntu-core | released  | 4.2.0-1014.21 | 
Показывать по
| Релиз | Статус | Примечание | 
|---|---|---|
| devel | not-affected  | 4.4.0-1050.54 | 
| esm-infra-legacy/trusty | DNE  | |
| precise | DNE  | |
| precise/esm | DNE  | |
| trusty | DNE  | |
| trusty/esm | DNE  | |
| upstream | released  | 3.13~rc4 | 
| vivid/stable-phone-overlay | DNE  | |
| vivid/ubuntu-core | DNE  | |
| wily | DNE  | 
Показывать по
| Релиз | Статус | Примечание | 
|---|---|---|
| devel | DNE  | |
| esm-infra-legacy/trusty | DNE  | |
| lucid | DNE  | |
| precise | released  | 3.2.0-1443.62 | 
| precise/esm | DNE  | precise was released [3.2.0-1443.62] | 
| quantal | released  | 3.5.0-239.55 | 
| raring | ignored  | end of life | 
| saucy | released  | 3.5.0-239.55 | 
| trusty | DNE  | |
| trusty/esm | DNE  | 
Показывать по
Ссылки на источники
EPSS
4 Medium
CVSS2
Связанные уязвимости
Multiple buffer underflows in the XFS implementation in the Linux kernel through 3.12.1 allow local users to cause a denial of service (memory corruption) or possibly have unspecified other impact by leveraging the CAP_SYS_ADMIN capability for a (1) XFS_IOC_ATTRLIST_BY_HANDLE or (2) XFS_IOC_ATTRLIST_BY_HANDLE_32 ioctl call with a crafted length value, related to the xfs_attrlist_by_handle function in fs/xfs/xfs_ioctl.c and the xfs_compat_attrlist_by_handle function in fs/xfs/xfs_ioctl32.c.
Multiple buffer underflows in the XFS implementation in the Linux kernel through 3.12.1 allow local users to cause a denial of service (memory corruption) or possibly have unspecified other impact by leveraging the CAP_SYS_ADMIN capability for a (1) XFS_IOC_ATTRLIST_BY_HANDLE or (2) XFS_IOC_ATTRLIST_BY_HANDLE_32 ioctl call with a crafted length value, related to the xfs_attrlist_by_handle function in fs/xfs/xfs_ioctl.c and the xfs_compat_attrlist_by_handle function in fs/xfs/xfs_ioctl32.c.
Multiple buffer underflows in the XFS implementation in the Linux kern ...
Multiple buffer underflows in the XFS implementation in the Linux kernel through 3.12.1 allow local users to cause a denial of service (memory corruption) or possibly have unspecified other impact by leveraging the CAP_SYS_ADMIN capability for a (1) XFS_IOC_ATTRLIST_BY_HANDLE or (2) XFS_IOC_ATTRLIST_BY_HANDLE_32 ioctl call with a crafted length value, related to the xfs_attrlist_by_handle function in fs/xfs/xfs_ioctl.c and the xfs_compat_attrlist_by_handle function in fs/xfs/xfs_ioctl32.c.
Уязвимость операционной системы Linux, позволяющая злоумышленнику повысить свои привилегии
EPSS
4 Medium
CVSS2