A code execution vulnerability exists in the directory rehashing functionality of E2fsprogs e2fsck 1.45.4. A specially crafted ext4 directory can cause an out-of-bounds write on the stack, resulting in code execution. An attacker can corrupt a partition to trigger this vulnerability.
References
Configurations
Configuration 1 (hide)
|
Configuration 2 (hide)
|
Configuration 3 (hide)
|
Configuration 4 (hide)
|
Configuration 5 (hide)
|
Configuration 6 (hide)
AND |
|
Configuration 7 (hide)
|
History
No history.
Information
Published : 2020-01-08 16:15
Updated : 2024-11-21 04:44
NVD link : CVE-2019-5188
Mitre link : CVE-2019-5188
CVE.ORG link : CVE-2019-5188
JSON object : View
Products Affected
debian
- debian_linux
fedoraproject
- fedora
netapp
- solidfire\,_enterprise_sds_\&_hci_storage_node
- hci_compute_node_firmware
- hci_compute_node
opensuse
- leap
e2fsprogs_project
- e2fsprogs
canonical
- ubuntu_linux
CWE
CWE-787
Out-of-bounds Write