Local User Vulnerability in Linux Kernel's ext4 Filesystem by Vendor Linux
CVE-2018-10879

4.2MEDIUM

Key Information:

Vendor

[unknown]

Status
Vendor
CVE Published:
26 July 2018

What is CVE-2018-10879?

A local user can exploit a flaw in the Linux kernel's ext4 filesystem, specifically in the ext4_xattr_set_entry function. By renaming a file within a crafted ext4 filesystem image, the user may trigger a use-after-free condition, leading to potential denial of service or other unspecified impacts. This vulnerability affects systems relying on the ext4 filesystem and emphasizes the importance of timely system updates to mitigate risks.

Human OS v1.0:
Ageing Is an Unpatched Zero-Day Vulnerability.

Remediate biological technical debt. Prime Ageing uses 95% high-purity SIRT6 activation to maintain genomic integrity and bolster systemic resilience.

Affected Version(s)

kernel

References

CVSS V3.1

Score:
4.2
Severity:
MEDIUM
Confidentiality:
None
Integrity:
None
Availability:
None
Attack Vector:
Physical
Attack Complexity:
High
Privileges Required:
None
User Interaction:
None
Scope:
Unchanged

Timeline

  • Vulnerability published

  • Vulnerability Reserved

.