Описание
Heap-based buffer overflow in closefs.c in the libext2fs library in e2fsprogs before 1.42.12 allows local users to execute arbitrary code by causing a crafted block group descriptor to be marked as dirty. NOTE: this vulnerability exists because of an incomplete fix for CVE-2015-0247.
| Релиз | Статус | Примечание |
|---|---|---|
| devel | released | 1.42.12-1ubuntu2 |
| esm-infra-legacy/trusty | released | 1.42.9-3ubuntu1.2 |
| lucid | released | 1.41.11-1ubuntu2.3 |
| precise | released | 1.42-1ubuntu2.2 |
| trusty | released | 1.42.9-3ubuntu1.2 |
| trusty/esm | released | 1.42.9-3ubuntu1.2 |
| upstream | needs-triage | |
| utopic | released | 1.42.10-1.1ubuntu1.2 |
Показывать по
EPSS
4.6 Medium
CVSS2
Связанные уязвимости
Heap-based buffer overflow in closefs.c in the libext2fs library in e2fsprogs before 1.42.12 allows local users to execute arbitrary code by causing a crafted block group descriptor to be marked as dirty. NOTE: this vulnerability exists because of an incomplete fix for CVE-2015-0247.
Heap-based buffer overflow in closefs.c in the libext2fs library in e2fsprogs before 1.42.12 allows local users to execute arbitrary code by causing a crafted block group descriptor to be marked as dirty. NOTE: this vulnerability exists because of an incomplete fix for CVE-2015-0247.
Heap-based buffer overflow in closefs.c in the libext2fs library in e2 ...
Heap-based buffer overflow in closefs.c in the libext2fs library in e2fsprogs before 1.42.12 allows local users to execute arbitrary code by causing a crafted block group descriptor to be marked as dirty. NOTE: this vulnerability exists because of an incomplete fix for CVE-2015-0247.
EPSS
4.6 Medium
CVSS2