An exploitable code execution vulnerability exists in the quota file functionality of E2fsprogs 1.45.3. A specially crafted ext4 partition can cause an out-of-bounds write on the heap, resulting in code execution. An attacker can corrupt a partition to trigger this vulnerability.
References
Configurations
Configuration 1 (hide)
|
Configuration 2 (hide)
|
Configuration 3 (hide)
|
Configuration 4 (hide)
|
Configuration 5 (hide)
|
History
No history.
Information
Published : 2019-09-24 22:15
Updated : 2024-11-21 04:44
NVD link : CVE-2019-5094
Mitre link : CVE-2019-5094
CVE.ORG link : CVE-2019-5094
JSON object : View
Products Affected
debian
- debian_linux
fedoraproject
- fedora
netapp
- hci_management_node
- solidfire
e2fsprogs_project
- e2fsprogs
canonical
- ubuntu_linux
CWE
CWE-787
Out-of-bounds Write