** Description changed:

- An incomplete fix for CVE-2009-4307 allows this issue to be exploited on
- PPC
+ The ext4_fill_flex_info function in fs/ext4/super.c in the Linux kernel
+ before 3.2.2, on the x86 platform and unspecified other platforms,
+ allows user-assisted remote attackers to trigger inconsistent
+ filesystem-groups data and possibly cause a denial of service via a
+ malformed ext4 filesystem containing a super block with a large FLEX_BG
+ group size (aka s_log_groups_per_flex value).  NOTE: this vulnerability
+ exists because of an incomplete fix for CVE-2009-4307.
  
  Break-Fix: 503358ae01b70ce6909d19dd01287093f6b6271c
  d50f2ab6f050311dbf7b8f5501b25f0bf64a439b

-- 
You received this bug notification because you are a member of Ubuntu
Bugs, which is subscribed to Ubuntu.
https://bugs.launchpad.net/bugs/984757

Title:
  CVE-2012-2100

To manage notifications about this bug go to:
https://bugs.launchpad.net/ubuntu/+source/linux/+bug/984757/+subscriptions

-- 
ubuntu-bugs mailing list
[email protected]
https://lists.ubuntu.com/mailman/listinfo/ubuntu-bugs

Reply via email to