Skip to main content

CVE-2014-9729

Severity Medium
Score 4.9/10

Summary

The udf_read_inode function in fs/udf/inode.c in the Linux kernel before 3.18.2 does not ensure a certain data-structure size consistency, which allows local users to cause a denial of service (system crash) via a crafted UDF filesystem image.

  • LOW
  • LOCAL
  • NONE
  • NONE
  • NONE
  • COMPLETE

References

Advisory Timeline

  • Published