PT-2014-9020 · Linux+3 · Linux Kernel+3

Carl Henrik Lunde

·

Published

2014-12-31

·

Updated

2016-12-22

·

CVE-2014-9730

CVSS v2.0

4.9

Medium

VectorAV:L/AC:L/Au:N/C:N/I:N/A:C
Name of the Vulnerable Software and Affected Versions Linux kernel versions prior to 3.18.2
Description The issue allows local users to cause a denial of service, resulting in a system crash, by utilizing a crafted UDF filesystem image. This is due to the udf pc to char function relying on unused component lengths.
Recommendations For versions prior to 3.18.2, update to version 3.18.2 or later to resolve the issue.

Exploit

Fix

Found an issue in the description? Have something to add? Feel free to write us 👾

Related Identifiers

ALT-PU-2015-1018
ALT-PU-2015-1794
CVE-2014-9730
DLA-246-1
OPENSUSE-SU-2015_1382-1
OPENSUSE-SU-2016_0301-1
SUSE-SU-2015:1224-1
SUSE-SU-2015:1324-1
SUSE-SU-2015:1592-1
SUSE-SU-2015:1611-1
SUSE-SU-2015:1678-1
USN-2517-1
USN-2518-1
USN-2541-1
USN-2542-1
USN-2543-1
USN-2544-1

Affected Products

Alt Linux
Linux Kernel
Suse
Ubuntu