CVE-2015-8839

Multiple race conditions in the ext4 filesystem implementation in the Linux kernel before 4.5 allow local users to cause a denial of service (disk corruption) by writing to a page that is associated with a different user's file after unsynchronized hole punching and page-fault handling.
References
Link Resource
http://git.kernel.org/cgit/linux/kernel/git/torvalds/linux.git/commit/?id=ea3d7209ca01da209cda6f0dea8be9cc4b7a933b Vendor Advisory
http://www.openwall.com/lists/oss-security/2016/04/01/4 Mailing List Third Party Advisory
http://www.securityfocus.com/bid/85798 Third Party Advisory VDB Entry
http://www.securitytracker.com/id/1035455 Third Party Advisory VDB Entry
http://www.ubuntu.com/usn/USN-3005-1 Third Party Advisory
http://www.ubuntu.com/usn/USN-3006-1 Third Party Advisory
http://www.ubuntu.com/usn/USN-3007-1 Third Party Advisory
https://access.redhat.com/errata/RHSA-2017:1842 Third Party Advisory
https://access.redhat.com/errata/RHSA-2017:2077 Third Party Advisory
https://access.redhat.com/errata/RHSA-2017:2669 Third Party Advisory
https://bugzilla.redhat.com/show_bug.cgi?id=1323577 Issue Tracking Third Party Advisory
https://github.com/torvalds/linux/commit/ea3d7209ca01da209cda6f0dea8be9cc4b7a933b Third Party Advisory
https://lists.debian.org/debian-lts-announce/2020/06/msg00011.html Third Party Advisory
https://lists.debian.org/debian-lts-announce/2020/06/msg00013.html Third Party Advisory
http://git.kernel.org/cgit/linux/kernel/git/torvalds/linux.git/commit/?id=ea3d7209ca01da209cda6f0dea8be9cc4b7a933b Vendor Advisory
http://www.openwall.com/lists/oss-security/2016/04/01/4 Mailing List Third Party Advisory
http://www.securityfocus.com/bid/85798 Third Party Advisory VDB Entry
http://www.securitytracker.com/id/1035455 Third Party Advisory VDB Entry
http://www.ubuntu.com/usn/USN-3005-1 Third Party Advisory
http://www.ubuntu.com/usn/USN-3006-1 Third Party Advisory
http://www.ubuntu.com/usn/USN-3007-1 Third Party Advisory
https://access.redhat.com/errata/RHSA-2017:1842 Third Party Advisory
https://access.redhat.com/errata/RHSA-2017:2077 Third Party Advisory
https://access.redhat.com/errata/RHSA-2017:2669 Third Party Advisory
https://bugzilla.redhat.com/show_bug.cgi?id=1323577 Issue Tracking Third Party Advisory
https://github.com/torvalds/linux/commit/ea3d7209ca01da209cda6f0dea8be9cc4b7a933b Third Party Advisory
https://lists.debian.org/debian-lts-announce/2020/06/msg00011.html Third Party Advisory
https://lists.debian.org/debian-lts-announce/2020/06/msg00013.html Third Party Advisory
Configurations

Configuration 1 (hide)

OR cpe:2.3:o:linux:linux_kernel:*:*:*:*:*:*:*:*
cpe:2.3:o:linux:linux_kernel:4.5:rc1:*:*:*:*:*:*
cpe:2.3:o:linux:linux_kernel:4.5:rc2:*:*:*:*:*:*
cpe:2.3:o:linux:linux_kernel:4.5:rc3:*:*:*:*:*:*
cpe:2.3:o:linux:linux_kernel:4.5:rc4:*:*:*:*:*:*
cpe:2.3:o:linux:linux_kernel:4.5:rc5:*:*:*:*:*:*
cpe:2.3:o:linux:linux_kernel:4.5:rc6:*:*:*:*:*:*
cpe:2.3:o:linux:linux_kernel:4.5:rc7:*:*:*:*:*:*

Configuration 2 (hide)

OR cpe:2.3:o:canonical:ubuntu_linux:14.04:*:*:*:lts:*:*:*
cpe:2.3:o:canonical:ubuntu_linux:16.04:*:*:*:lts:*:*:*

History

No history.

Information

Published : 2016-05-02 10:59

Updated : 2025-04-12 10:46


NVD link : CVE-2015-8839

Mitre link : CVE-2015-8839

CVE.ORG link : CVE-2015-8839


JSON object : View

Products Affected

linux

  • linux_kernel

canonical

  • ubuntu_linux
CWE
CWE-362

Concurrent Execution using Shared Resource with Improper Synchronization ('Race Condition')