kernel: Mounting ext2 fs e2fsprogs/tests/f_orphan as ext4 crashes system
Published Dec 28, 2015
4.4
MEDIUMCVSS 3.0
EPSS 0.40%
Description
fs/ext4/namei.c in the Linux kernel before 3.7 allows physically proximate attackers to cause a denial of service (system crash) via a crafted no-journal filesystem, a related issue to CVE-2013-2015.
Affected products
No data.
- ≤ 3.6.11
No data.
Red Hat Enterprise Linux 6
kernel-0:2.6.32-642.el6
Fixed · RHSA-2016:0855
Red Hat Enterprise Linux 5
kernel
Will not fix
Red Hat Enterprise Linux 7
kernel
Not affected
Red Hat Enterprise Linux 7
kernel-rt
Not affected
Red Hat Enterprise MRG 2
realtime-kernel
Not affected
| Product | Package | State | Advisory |
|---|---|---|---|
| Red Hat Enterprise Linux 6 | kernel-0:2.6.32-642.el6 | Fixed | RHSA-2016:0855 |
| Red Hat Enterprise Linux 5 | kernel | Will not fix | n/a |
| Red Hat Enterprise Linux 7 | kernel | Not affected | n/a |
| Red Hat Enterprise Linux 7 | kernel-rt | Not affected | n/a |
| Red Hat Enterprise MRG 2 | realtime-kernel | Not affected | n/a |
No package ranges for this CVE.
Remediation
Red Hat statement
This problem did not affect the Linux kernel packages as shipped with Red Hat Enterprise Linux 7 and MRG-2. This issue is not planned to be corrected in future updates for Red Hat Enterprise Linux 5. This issue is rated low as exploiting it requires physical (to plug in specially prepared usb disk) or root (to mount specially prepared filesystem) access to the system. Due to the nature of the flaw, privilege escalation cannot be fully ruled out, although we believe it is unlikely.
References (14)
- http://git.kernel.org/cgit/linux/kernel/git/torvalds/linux.git/commit/?id=c9b92530a723ac5ef8e352885a1862b18f31b2f5 x_refsource_CONFIRMVendor Advisory
- http://lists.opensuse.org/opensuse-security-announce/2015-12/msg00026.html vendor-advisoryx_refsource_SUSE
- http://lists.opensuse.org/opensuse-security-announce/2015-12/msg00031.html vendor-advisoryx_refsource_SUSE
- http://lists.opensuse.org/opensuse-security-announce/2016-08/msg00038.html vendor-advisoryx_refsource_SUSE
- http://rhn.redhat.com/errata/RHSA-2016-0855.html vendor-advisoryx_refsource_REDHAT
- http://www.securitytracker.com/id/1034559 vdb-entryx_refsource_SECTRACK
- https://access.redhat.com/security/cve/CVE-2015-7509 Vendor Advisory
- https://bugzilla.redhat.com/show_bug.cgi?id=1259222 x_refsource_CONFIRMIssue Tracking
- https://bugzilla.suse.com/show_bug.cgi?id=956709 x_refsource_CONFIRM
- https://euvd.enisa.europa.eu/vulnerability/EUVD-2015-7430 Advisory
- https://github.com/torvalds/linux/commit/c9b92530a723ac5ef8e352885a1862b18f31b2f5 x_refsource_CONFIRMVendor Advisory
- https://nvd.nist.gov/vuln/detail/CVE-2015-7509
- https://security-tracker.debian.org/tracker/CVE-2015-7509 x_refsource_CONFIRM
- https://www.cve.org/CVERecord?id=CVE-2015-7509
Change history (0)
No recorded changes yet.