Back

HIGH

e2fsprogs: Crafted ext4 partition leads to out-of-bounds write

Published Sep 24, 2019

Description

An exploitable code execution vulnerability exists in the quota file functionality of E2fsprogs 1.45.3. A specially crafted ext4 partition can cause an out-of-bounds write on the heap, resulting in code execution. An attacker can corrupt a partition to trigger this vulnerability.

Affected products

Remediation

No remediation recorded yet.

References (14)

Change history (0)

No recorded changes yet.

Sources
CVE.org / MITRE
Status PUBLISHED
Assigner talos
Published Sep 24, 2019
Updated May 30, 2025
Reserved Jan 4, 2019
CISA Vulnrichment
Updated May 30, 2025
NVD
Status Modified
Modified Jun 17, 2026
Red Hat
Severity Moderate
Public date Aug 27, 2019