The error-reporting functionality in (1) fs/ext2/dir.c, (2) fs/ext3/dir.c, and possibly (3) fs/ext4/dir.c in the Linux kernel 2.6.26.5 does not limit the number of printk console messages that report directory corruption, which allows physically proximate attackers to cause a denial of service (temporary system hang) by mounting a filesystem that has corrupted dir->i_size and dir->i_blocks values and performing (a) read or (b) write operations. NOTE: there are limited scenarios in which this crosses privilege boundaries.
Metrics
Affected Vendors & Products
References
History
No history.
MITRE
Status: PUBLISHED
Assigner: redhat
Published: 2008-09-27T00:00:00
Updated: 2024-08-07T09:45:17.864Z
Reserved: 2008-08-07T00:00:00
Link: CVE-2008-3528
Vulnrichment
No data.
NVD
Status : Modified
Published: 2008-09-27T10:30:03.303
Modified: 2024-11-21T00:49:28.010
Link: CVE-2008-3528
Redhat