ISOMAN

CVE

CVE-2018-10840

Linux kernel is vulnerable to a heap-based buffer overflow in the fs/ext4/xattr.c:ext4_xattr_set_entry() function. An attacker could exploit this by operating on a mounted crafted ext4 image.

Severity
MEDIUM
CVSS
6.6
Published
Modified

Linked Releases

References

  1. http://www.securityfocus.com/bid/104858
  2. https://access.redhat.com/errata/RHSA-2019:0162
  3. https://bugzilla.redhat.com/show_bug.cgi?id=CVE-2018-10840
  4. https://usn.ubuntu.com/3752-1/
  5. https://usn.ubuntu.com/3752-2/
  6. https://usn.ubuntu.com/3752-3/
  7. http://www.securityfocus.com/bid/104858
  8. https://access.redhat.com/errata/RHSA-2019:0162
  9. https://bugzilla.redhat.com/show_bug.cgi?id=CVE-2018-10840
  10. https://usn.ubuntu.com/3752-1/
  11. https://usn.ubuntu.com/3752-2/
  12. https://usn.ubuntu.com/3752-3/