The ext4_fill_super function in fs/ext4/super.c in the Linux kernel up to and including 4.15.15 does not always initialize the crc32c checksum driver, which allows malicious users to cause a denial of service (ext4_xattr_inode_hash NULL pointer dereference and system crash) via a crafted ext4 image.
Vulnerable Product | Search on Vulmon | Subscribe to Product |
---|---|---|
linux linux kernel |
||
redhat enterprise linux desktop 7.0 |
||
redhat enterprise linux workstation 7.0 |
||
redhat enterprise linux server 7.0 |
||
canonical ubuntu linux 16.04 |
||
canonical ubuntu linux 18.04 |