oss-sec mailing list archives

Re: CVE Request Linux kernel: fs: isofs: infinite loop in CE records


From: cve-assign () mitre org
Date: Thu, 25 Dec 2014 11:24:04 -0500 (EST)

-----BEGIN PGP SIGNED MESSAGE-----
Hash: SHA1

Linux kernel built with the iso9660 file system(CONFIG_ISO9660_FS) support is
vulnerable to an infinite recursion loop flaw, which could lead to a crash or
render a system unresponsive/unusable after a while. This occurs while
mounting an iso9660 image.

An unprivileged user/process could use this flaw to crash the system resulting
in DoS.

https://git.kernel.org/linus/f54e18f1b831c92f6512d2eedb224cd63d607d3d

Use CVE-2014-9420.

- -- 
CVE assignment team, MITRE CVE Numbering Authority
M/S M300
202 Burlington Road, Bedford, MA 01730 USA
[ PGP key available through http://cve.mitre.org/cve/request_id.html ]
-----BEGIN PGP SIGNATURE-----
Version: GnuPG v1.4.14 (SunOS)

iQEcBAEBAgAGBQJUnDnFAAoJEKllVAevmvmsEvsIALrkYpdxnWpQpj4KUUDOYXhN
7atB6dJ2d+JxbvpeMXTBHZAWeFSq/DQewsW2g0u8231EDQMeeRjuL3h4JD6Zs71r
OgbJEzjX3BfyKKCFP6q0NxPNxHbIFdhnqSTLueNv/RkbBpyuL1NfpCPkDSeYVgo8
eYCpRZkLGdkDxvzpxkC0OMO8M2Xz2CwK/DPgxijUSzyA/ygC9szu5HQc5BsWNkpl
aqXjJK/qVu6ZGWZLbpTIWXPuKrQ3cK+yac7F12btDOPgV2Ctuk8SYJrsLP8MzuPl
5WItMshRBAsSqtntjIOef1xHo0oR/rB8dZNgjixNanFBmOl/Zr5uUFFb15NDTlg=
=CFil
-----END PGP SIGNATURE-----


Current thread: