6.2
CVSSv3

CVE-2015-8872

Published: 03/06/2016 Updated: 30/05/2020
CVSS v2 Base Score: 2.1 | Impact Score: 2.9 | Exploitability Score: 3.9
CVSS v3 Base Score: 6.2 | Impact Score: 3.6 | Exploitability Score: 2.5
VMScore: 187
Vector: AV:L/AC:L/Au:N/C:N/I:N/A:P

Vulnerability Summary

The set_fat function in fat.c in dosfstools prior to 4.0 might allow malicious users to corrupt a FAT12 filesystem or cause a denial of service (invalid memory read and crash) by writing an odd number of clusters to the third to last entry on a FAT12 filesystem, which triggers an "off-by-two error."

Vulnerability Trend

Vulnerable Product Search on Vulmon Subscribe to Product

canonical ubuntu linux 16.04

canonical ubuntu linux 15.10

canonical ubuntu linux 14.04

canonical ubuntu linux 12.04

opensuse leap 42.1

opensuse opensuse 13.2

dosfstools project dosfstools

Vendor Advisories

dosfstools could be made to crash or run programs if it processed a specially crafted filesystem ...