Back

MEDIUM

kernel: Null pointer dereference when mounting ext4

Published May 2, 2016

Description

The ext4 implementation in the Linux kernel before 2.6.34 does not properly track the initialization of certain data structures, which allows physically proximate attackers to cause a denial of service (NULL pointer dereference and panic) via a crafted USB device, related to the ext4_fill_super function.

Affected products

Remediation

Red Hat statement

This problem did not affect the Linux kernel packages as shipped with Red Hat Enterprise Linux 5, 7 and MRG-2.

Metrics

References (10)

Change history (0)

No recorded changes yet.

Sources
CVE.org / MITRE
Status PUBLISHED
Assigner redhat
Published May 2, 2016
Updated Aug 6, 2024
Reserved Nov 23, 2015
NVD
Status Modified
Modified Jun 17, 2026
Red Hat
Severity Low
Public date Nov 23, 2015