The xattr file system code, as backported in Red Hat Enterprise Linux 3 on 64-bit systems, does not properly handle certain offsets, which allows local users to cause a denial of service (system crash) via certain actions on an ext3 file system with extended attributes enabled.
Link | Tags |
---|---|
http://secunia.com/advisories/18056 | third party advisory |
http://secunia.com/advisories/18059 | third party advisory |
http://www.securityfocus.com/bid/13680 | vdb entry |
http://www.redhat.com/support/errata/RHSA-2005-294.html | patch vendor advisory |
http://www.debian.org/security/2005/dsa-922 | vendor advisory |
http://www.debian.org/security/2005/dsa-921 | vendor advisory |
https://oval.cisecurity.org/repository/search/definition/oval%3Aorg.mitre.oval%3Adef%3A11406 | signature vdb entry |