Описание
An exploitable code execution vulnerability exists in the quota file functionality of E2fsprogs 1.45.3. A specially crafted ext4 partition can cause an out-of-bounds write on the heap, resulting in code execution. An attacker can corrupt a partition to trigger this vulnerability.
| Релиз | Статус | Примечание |
|---|---|---|
| bionic | released | 1.44.1-1ubuntu1.2 |
| devel | released | 1.45.3-4ubuntu2 |
| disco | released | 1.44.6-1ubuntu0.1 |
| esm-infra-legacy/trusty | released | 1.42.9-3ubuntu1.3+esm1 |
| esm-infra/bionic | released | 1.44.1-1ubuntu1.2 |
| esm-infra/xenial | released | 1.42.13-1ubuntu1.1 |
| precise/esm | not-affected | 1.42-1ubuntu2.4 |
| trusty | ignored | end of standard support |
| trusty/esm | released | 1.42.9-3ubuntu1.3+esm1 |
| upstream | released | 1.45.4-1 |
Показывать по
4.6 Medium
CVSS2
7.5 High
CVSS3
Связанные уязвимости
An exploitable code execution vulnerability exists in the quota file functionality of E2fsprogs 1.45.3. A specially crafted ext4 partition can cause an out-of-bounds write on the heap, resulting in code execution. An attacker can corrupt a partition to trigger this vulnerability.
An exploitable code execution vulnerability exists in the quota file functionality of E2fsprogs 1.45.3. A specially crafted ext4 partition can cause an out-of-bounds write on the heap, resulting in code execution. An attacker can corrupt a partition to trigger this vulnerability.
An exploitable code execution vulnerability exists in the quota file f ...
4.6 Medium
CVSS2
7.5 High
CVSS3