Описание
The read_boot function in boot.c in dosfstools before 4.0 allows attackers to cause a denial of service (crash) via a crafted filesystem, which triggers a heap-based buffer overflow in the (1) read_fat function or an out-of-bounds heap read in (2) get_fat function.
| Релиз | Статус | Примечание |
|---|---|---|
| devel | not-affected | 4.0-2ubuntu1 |
| esm-infra-legacy/trusty | released | 3.0.26-1ubuntu0.1 |
| esm-infra/xenial | released | 3.0.28-2ubuntu0.1 |
| precise | released | 3.0.12-1ubuntu1.3 |
| precise/esm | not-affected | 3.0.12-1ubuntu1.3 |
| trusty | released | 3.0.26-1ubuntu0.1 |
| trusty/esm | released | 3.0.26-1ubuntu0.1 |
| upstream | released | 4.0-1 |
| vivid/stable-phone-overlay | ignored | end of life, was pending |
| vivid/ubuntu-core | released | 3.0.27-1ubuntu0.1 |
Показывать по
EPSS
2.1 Low
CVSS2
6.2 Medium
CVSS3
Связанные уязвимости
The read_boot function in boot.c in dosfstools before 4.0 allows attackers to cause a denial of service (crash) via a crafted filesystem, which triggers a heap-based buffer overflow in the (1) read_fat function or an out-of-bounds heap read in (2) get_fat function.
The read_boot function in boot.c in dosfstools before 4.0 allows attackers to cause a denial of service (crash) via a crafted filesystem, which triggers a heap-based buffer overflow in the (1) read_fat function or an out-of-bounds heap read in (2) get_fat function.
The read_boot function in boot.c in dosfstools before 4.0 allows attac ...
The read_boot function in boot.c in dosfstools before 4.0 allows attackers to cause a denial of service (crash) via a crafted filesystem, which triggers a heap-based buffer overflow in the (1) read_fat function or an out-of-bounds heap read in (2) get_fat function.
EPSS
2.1 Low
CVSS2
6.2 Medium
CVSS3