Follow @Openwall on Twitter for new release announcements and other news
[<prev] [next>] [thread-next>] [day] [month] [year] [list]
Message-ID: <alpine.LFD.2.11.1506022313530.14742@wniryva>
Date: Tue, 2 Jun 2015 23:27:49 +0530 (IST)
From: P J P <ppandit@...hat.com>
To: oss security list <oss-security@...ts.openwall.com>
cc: Carl Henrik Lunde <chlunde@...g.uio.no>
Subject: CVE request Linux kernel: fs: udf kernel oops

   Hello,

Linux kernel built with the UDF file system(CONFIG_UDF_FS) support is 
vulnerable to a crash. It could occur while fetching inode information from a 
corrupted/malicious udf file system image.

An unprivileged user could use this flaw to crash the kernel resulting in 
DoS.

Upstream fix:
-------------
   -> https://git.kernel.org/linus/23b133bdc452aa441fcb9b82cbf6dd05cfd342d0


Thank you 'Carl H Lunde' for reporting this issue.

Thank you.
--
Prasad J Pandit / Red Hat Product Security Team
47AF CE69 3A90 54AA 9045 1053 DD13 3D32 FE5B 041F

Powered by blists - more mailing lists

Please check out the Open Source Software Security Wiki, which is counterpart to this mailing list.

Confused about mailing lists and their use? Read about mailing lists on Wikipedia and check out these guidelines on proper formatting of your messages.