Back to search
CVE-2009-0745
Published: Feb 27, 2009
Modified: Aug 7, 2024
PUBLISHED
Description
The ext4_group_add function in fs/ext4/resize.c in the Linux kernel 2.6.27 before 2.6.27.19 and 2.6.28 before 2.6.28.7 does not properly initialize the group descriptor during a resize (aka resize2fs) operation, which might allow local users to cause a denial of service (OOPS) by arranging for crafted values to be present in available memory.
| Vendor | Product | Versions |
|---|---|---|
n/a | n/a | affected n/a |
References
http://kernel.org/pub/linux/kernel/v2.6/ChangeLog-2.6.27.19
x_refsource_CONFIRM
ADV-2009-0509
vdb-entry
x_refsource_VUPEN
37471
third-party-advisory
x_refsource_SECUNIA
RHSA-2009:1243
vendor-advisory
x_refsource_REDHAT
http://www.vmware.com/security/advisories/VMSA-2009-0016.html
x_refsource_CONFIRM
DSA-1749
vendor-advisory
x_refsource_DEBIAN
oval:org.mitre.oval:def:7765
vdb-entry
signature
x_refsource_OVAL
oval:org.mitre.oval:def:10942
vdb-entry
signature
x_refsource_OVAL
USN-751-1
vendor-advisory
x_refsource_UBUNTU
http://bugzilla.kernel.org/show_bug.cgi?id=12433
x_refsource_CONFIRM
36562
third-party-advisory
x_refsource_SECUNIA
34981
third-party-advisory
x_refsource_SECUNIA
34394
third-party-advisory
x_refsource_SECUNIA
DSA-1787
vendor-advisory
x_refsource_DEBIAN
http://kernel.org/pub/linux/kernel/v2.6/ChangeLog-2.6.28.7
x_refsource_CONFIRM
ADV-2009-3316
vdb-entry
x_refsource_VUPEN
Security Training
Train your team to recognize and prevent security threats with our comprehensive security awareness program.
Start TrainingVulnerability Scanning
Discover vulnerabilities in your applications and infrastructure before attackers do.
Scan Now