Back to search
CVE-2010-3015
Published: Aug 20, 2010
Modified: Aug 7, 2024
PUBLISHED
Description
Integer overflow in the ext4_ext_get_blocks function in fs/ext4/extents.c in the Linux kernel before 2.6.34 allows local users to cause a denial of service (BUG and system crash) via a write operation on the last block of a large file, followed by a sync operation.
| Vendor | Product | Versions |
|---|---|---|
n/a | n/a | affected n/a |
References
kernel-stacksize-dos(61156)
vdb-entry
x_refsource_XF
RHSA-2010:0723
vendor-advisory
x_refsource_REDHAT
USN-1000-1
vendor-advisory
x_refsource_UBUNTU
ADV-2010-3117
vdb-entry
x_refsource_VUPEN
20111013 VMSA-2011-0012 VMware ESXi and ESX updates to third party libraries and ESX Service Console
mailing-list
x_refsource_BUGTRAQ
46397
third-party-advisory
x_refsource_SECUNIA
[oss-security] 20100817 Re: CVE request - kernel: integer overflow in ext4_ext_get_blocks()
mailing-list
x_refsource_MLIST
[oss-security] 20100816 CVE request - kernel: integer overflow in ext4_ext_get_blocks()
mailing-list
x_refsource_MLIST
[oss-security] 20100816 Re: CVE request - kernel: integer overflow in ext4_ext_get_blocks()
mailing-list
x_refsource_MLIST
SUSE-SA:2010:040
vendor-advisory
x_refsource_SUSE
https://bugzilla.redhat.com/show_bug.cgi?id=624327
x_refsource_CONFIRM
SUSE-SA:2011:007
vendor-advisory
x_refsource_SUSE
MDVSA-2010:247
vendor-advisory
x_refsource_MANDRIVA
ADV-2011-0298
vdb-entry
x_refsource_VUPEN
http://www.vmware.com/security/advisories/VMSA-2011-0012.html
x_refsource_CONFIRM
http://support.avaya.com/css/P8/documents/100113326
x_refsource_CONFIRM
http://www.kernel.org/pub/linux/kernel/v2.6/ChangeLog-2.6.34
x_refsource_CONFIRM
DSA-2094
vendor-advisory
x_refsource_DEBIAN
42477
vdb-entry
x_refsource_BID
MDVSA-2011:029
vendor-advisory
x_refsource_MANDRIVA
SUSE-SA:2010:054
vendor-advisory
x_refsource_SUSE
MDVSA-2010:172
vendor-advisory
x_refsource_MANDRIVA
Security Training
Train your team to recognize and prevent security threats with our comprehensive security awareness program.
Start TrainingVulnerability Scanning
Discover vulnerabilities in your applications and infrastructure before attackers do.
Scan Now