CVE 2013-2015
The ext4_orphan_del function in fs/ext4/namei.c in the Linux kernel before 3.7.3 does not properly handle orphan-list entries for non-journal filesystems, which allows physically proximate attackers to cause a denial of service (system hang) via a crafted filesystem on removable media, as demonstrated by the e2fsprogs tests/f_
Related bugs and status
CVE-2013-2015 (Candidate) is related to these bugs:
Bug #1174861: CVE-2013-2015
Summary | In | Importance | Status | |||
---|---|---|---|---|---|---|
1174861 | CVE-2013-2015 | linux (Ubuntu) | Medium | Invalid | ||
1174861 | CVE-2013-2015 | linux-fsl-imx51 (Ubuntu) | Medium | Invalid | ||
1174861 | CVE-2013-2015 | linux-mvl-dove (Ubuntu) | Medium | Invalid | ||
1174861 | CVE-2013-2015 | linux-lts-backport-maverick (Ubuntu) | Medium | Invalid | ||
1174861 | CVE-2013-2015 | linux-lts-backport-natty (Ubuntu) | Undecided | Invalid | ||
1174861 | CVE-2013-2015 | linux-ti-omap4 (Ubuntu) | Medium | Invalid | ||
1174861 | CVE-2013-2015 | linux-ec2 (Ubuntu) | Medium | Invalid | ||
1174861 | CVE-2013-2015 | linux-lts-backport-maverick (Ubuntu Saucy) | Medium | Invalid | ||
1174861 | CVE-2013-2015 | linux-lts-backport-natty (Ubuntu Saucy) | Undecided | Invalid | ||
1174861 | CVE-2013-2015 | linux-lts-backport-maverick (Ubuntu Raring) | Medium | Invalid | ||
1174861 | CVE-2013-2015 | linux-lts-backport-natty (Ubuntu Raring) | Undecided | Invalid | ||
1174861 | CVE-2013-2015 | linux-lts-backport-maverick (Ubuntu Quantal) | Medium | Invalid | ||
1174861 | CVE-2013-2015 | linux-lts-backport-natty (Ubuntu Quantal) | Undecided | Invalid | ||
1174861 | CVE-2013-2015 | linux (Ubuntu Precise) | Medium | Invalid | ||
1174861 | CVE-2013-2015 | linux-ec2 (Ubuntu Precise) | Medium | Invalid | ||
1174861 | CVE-2013-2015 | linux-fsl-imx51 (Ubuntu Precise) | Medium | Invalid | ||
1174861 | CVE-2013-2015 | linux-lts-backport-maverick (Ubuntu Precise) | Medium | Invalid | ||
1174861 | CVE-2013-2015 | linux-lts-backport-natty (Ubuntu Precise) | Undecided | Invalid | ||
1174861 | CVE-2013-2015 | linux-mvl-dove (Ubuntu Precise) | Medium | Invalid | ||
1174861 | CVE-2013-2015 | linux-ti-omap4 (Ubuntu Precise) | Medium | Invalid | ||
1174861 | CVE-2013-2015 | linux-lts-backport-maverick (Ubuntu Lucid) | Medium | Invalid | ||
1174861 | CVE-2013-2015 | linux-lts-backport-natty (Ubuntu Lucid) | Undecided | Won't Fix | ||
1174861 | CVE-2013-2015 | linux-armadaxp (Ubuntu) | Medium | Invalid | ||
1174861 | CVE-2013-2015 | linux-armadaxp (Ubuntu Precise) | Medium | Invalid | ||
1174861 | CVE-2013-2015 | linux-lts-backport-oneiric (Ubuntu) | Medium | Invalid | ||
1174861 | CVE-2013-2015 | linux-lts-backport-oneiric (Ubuntu Lucid) | Medium | Invalid | ||
1174861 | CVE-2013-2015 | linux-lts-backport-oneiric (Ubuntu Precise) | Medium | Invalid | ||
1174861 | CVE-2013-2015 | linux-lts-backport-oneiric (Ubuntu Quantal) | Medium | Invalid | ||
1174861 | CVE-2013-2015 | linux-lts-backport-oneiric (Ubuntu Raring) | Medium | Invalid | ||
1174861 | CVE-2013-2015 | linux-lts-backport-oneiric (Ubuntu Saucy) | Medium | Invalid | ||
1174861 | CVE-2013-2015 | linux-lts-quantal (Ubuntu) | Medium | Invalid | ||
1174861 | CVE-2013-2015 | linux-lts-quantal (Ubuntu Precise) | Medium | Invalid | ||
1174861 | CVE-2013-2015 | linux-lts-raring (Ubuntu) | Medium | Invalid | ||
1174861 | CVE-2013-2015 | linux-lts-raring (Ubuntu Precise) | Medium | Won't Fix | ||
1174861 | CVE-2013-2015 | linux-lts-trusty (Ubuntu) | Medium | Invalid | ||
1174861 | CVE-2013-2015 | linux-lts-trusty (Ubuntu Precise) | Medium | Invalid | ||
1174861 | CVE-2013-2015 | linux (Ubuntu Trusty) | Medium | Invalid | ||
1174861 | CVE-2013-2015 | linux-armadaxp (Ubuntu Trusty) | Medium | Invalid | ||
1174861 | CVE-2013-2015 | linux-ec2 (Ubuntu Trusty) | Medium | Invalid | ||
1174861 | CVE-2013-2015 | linux-fsl-imx51 (Ubuntu Trusty) | Medium | Invalid | ||
1174861 | CVE-2013-2015 | linux-lts-backport-maverick (Ubuntu Trusty) | Undecided | New | ||
1174861 | CVE-2013-2015 | linux-lts-backport-natty (Ubuntu Trusty) | Undecided | New | ||
1174861 | CVE-2013-2015 | linux-lts-backport-oneiric (Ubuntu Trusty) | Undecided | New | ||
1174861 | CVE-2013-2015 | linux-lts-quantal (Ubuntu Trusty) | Medium | Invalid | ||
1174861 | CVE-2013-2015 | linux-lts-raring (Ubuntu Trusty) | Medium | Invalid | ||
1174861 | CVE-2013-2015 | linux-lts-trusty (Ubuntu Trusty) | Medium | Invalid | ||
1174861 | CVE-2013-2015 | linux-mvl-dove (Ubuntu Trusty) | Medium | Invalid | ||
1174861 | CVE-2013-2015 | linux-ti-omap4 (Ubuntu Trusty) | Medium | Invalid | ||
1174861 | CVE-2013-2015 | linux-lts-backport-maverick (Ubuntu Utopic) | Undecided | Won't Fix | ||
1174861 | CVE-2013-2015 | linux-lts-backport-natty (Ubuntu Utopic) | Undecided | Won't Fix |
See the
CVE page on Mitre.org
for more details.