CVE-2015-0247

CVSS v2.0 4.6 (Medium)
46% Progress
EPSS 0.05 % (21th)
0.05% Progress
Affected Products 4
Advisories 13

Heap-based buffer overflow in openfs.c in the libext2fs library in e2fsprogs before 1.42.12 allows local users to execute arbitrary code via crafted block group descriptor data in a filesystem image.

Weaknesses
CWE-119
Improper Restriction of Operations within the Bounds of a Memory Buffer
Related CVEs
CVE Status
PUBLISHED
CNA
Red Hat, Inc.
Published Date
2015-02-17 15:59:02
(9 years ago)
Updated Date
2018-10-09 19:55:33
(6 years ago)

Affected Products

Loading...
Loading...
Loading...

Configuration #1

    CPE23 From Up To
  E2fsprogs Project E2fsprogs 1.42.11 and prior versions cpe:2.3:a:e2fsprogs_project:e2fsprogs <= 1.42.11

Configuration #2

    CPE23 From Up To
  Debian Linux 7.0 cpe:2.3:o:debian:debian_linux:7.0

Configuration #3

    CPE23 From Up To
  Canonical Ubuntu Linux 10.04 cpe:2.3:o:canonical:ubuntu_linux:10.04:*:*:*:lts
  Canonical Ubuntu Linux 12.04 cpe:2.3:o:canonical:ubuntu_linux:12.04:*:*:*:lts
  Canonical Ubuntu Linux 14.04 cpe:2.3:o:canonical:ubuntu_linux:14.04:*:*:*:lts
  Canonical Ubuntu Linux 14.10 cpe:2.3:o:canonical:ubuntu_linux:14.10

Configuration #4

    CPE23 From Up To
  Fedoraproject Fedora 20 cpe:2.3:o:fedoraproject:fedora:20
  Fedoraproject Fedora 21 cpe:2.3:o:fedoraproject:fedora:21
Loading...
Loading...
Loading...
Loading...
Loading...
Loading...
Loading...
Loading...
Loading...