Lucene search

K
ubuntuUbuntuUSN-5478-1
HistoryJun 14, 2022 - 12:00 a.m.

util-linux vulnerability

2022-06-1400:00:00
ubuntu.com
41
ubuntu
util-linux
libblkid
vulnerability
denial of service
msdos partition table
memory management

CVSS2

4.9

Attack Vector

LOCAL

Attack Complexity

LOW

Authentication

NONE

Confidentiality Impact

NONE

Integrity Impact

NONE

Availability Impact

COMPLETE

AV:L/AC:L/Au:N/C:N/I:N/A:C

CVSS3

4.6

Attack Vector

PHYSICAL

Attack Complexity

LOW

Privileges Required

NONE

User Interaction

NONE

Scope

UNCHANGED

Confidentiality Impact

NONE

Integrity Impact

NONE

Availability Impact

HIGH

CVSS:3.1/AV:P/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:H

AI Score

5.1

Confidence

High

EPSS

0.002

Percentile

53.1%

Releases

  • Ubuntu 16.04 ESM

Packages

  • util-linux - miscellaneous system utilities

Details

Christian Moch and Michael Gruhn discovered that the libblkid library
of util-linux did not properly manage memory under certain
circumstances. A local attacker could possibly use this issue
to cause denial of service by consuming all memory through
a specially crafted MSDOS partition table.

OSVersionArchitecturePackageVersionFilename
Ubuntu16.04noarchutil-linux< 2.27.1-6ubuntu3.10+esm2UNKNOWN
Ubuntu16.04noarchbsdutils< 1:2.27.1-6ubuntu3.10UNKNOWN
Ubuntu16.04noarchbsdutils-dbgsym< 1:2.27.1-6ubuntu3.10UNKNOWN
Ubuntu16.04noarchfdisk-udeb< 2.27.1-6ubuntu3.10UNKNOWN
Ubuntu16.04noarchfdisk-udeb-dbgsym< 2.27.1-6ubuntu3.10UNKNOWN
Ubuntu16.04noarchlibblkid-dev< 2.27.1-6ubuntu3.10UNKNOWN
Ubuntu16.04noarchlibblkid1< 2.27.1-6ubuntu3.10UNKNOWN
Ubuntu16.04noarchlibblkid1-dbgsym< 2.27.1-6ubuntu3.10UNKNOWN
Ubuntu16.04noarchlibblkid1-udeb< 2.27.1-6ubuntu3.10UNKNOWN
Ubuntu16.04noarchlibblkid1-udeb-dbgsym< 2.27.1-6ubuntu3.10UNKNOWN
Rows per page:
1-10 of 381

CVSS2

4.9

Attack Vector

LOCAL

Attack Complexity

LOW

Authentication

NONE

Confidentiality Impact

NONE

Integrity Impact

NONE

Availability Impact

COMPLETE

AV:L/AC:L/Au:N/C:N/I:N/A:C

CVSS3

4.6

Attack Vector

PHYSICAL

Attack Complexity

LOW

Privileges Required

NONE

User Interaction

NONE

Scope

UNCHANGED

Confidentiality Impact

NONE

Integrity Impact

NONE

Availability Impact

HIGH

CVSS:3.1/AV:P/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:H

AI Score

5.1

Confidence

High

EPSS

0.002

Percentile

53.1%