Lucene search

K
f5F5F5:K17543
HistoryNov 05, 2015 - 12:00 a.m.

K17543 : Linux kernel vulnerability CVE-2014-9420

2015-11-0500:00:00
my.f5.com
37

4.5 Medium

AI Score

Confidence

High

0.0004 Low

EPSS

Percentile

10.1%

Security Advisory Description

The rock_continue function in fs/isofs/rock.c in the Linux kernel through 3.18.1 does not restrict the number of Rock Ridge continuation entries, which allows local users to cause a denial of service (infinite loop, and system crash or hang) via a crafted iso9660 image. (CVE-2014-9420)

Impact

A local authenticated attacker may cause a denial-of-service (DoS) to the system by using a specially crafted ISO image.