PT-2020-18909 · Samsung+1 · Fsck.F2Fs+1

Published

2019-10-17

·

Updated

2024-10-18

·

CVE-2020-6070

CVSS v3.1

7.8

High

VectorAV:L/AC:L/PR:N/UI:R/S:U/C:H/I:H/A:H
Name of the Vulnerable Software and Affected Versions fsck.f2fs version 1.12.0
Description A code execution issue exists in the file system checking functionality due to a logic flaw and out-of-bounds heap operations. This can be triggered by a specially crafted f2fs file, allowing an attacker to execute code.
Recommendations For fsck.f2fs version 1.12.0, at the moment, there is no information about a newer version that contains a fix for this vulnerability.

Exploit

Weakness Enumeration

Related Identifiers

ALT-PU-2019-2991
ALT-PU-2024-13883
CVE-2020-6070
MGASA-2020-0436

Affected Products

Alt Linux
Fsck.F2Fs