CVE-2011-4132

Linux Kernel - Denial of Service via Invalid Log First Block Value in JBD

Title source: llm
STIX 2.1

Description

The cleanup_journal_tail function in the Journaling Block Device (JBD) functionality in the Linux kernel 2.6 allows local users to cause a denial of service (assertion error and kernel oops) via an ext3 or ext4 image with an "invalid log first block value."

References (10)

Core 10
Core References
Third Party Advisory third-party-advisory x_refsource_secunia
http://secunia.com/advisories/48898
Third Party Advisory, VDB Entry vdb-entry x_refsource_sectrack
http://securitytracker.com/id?1026325
Third Party Advisory, VDB Entry vdb-entry x_refsource_bid
http://www.securityfocus.com/bid/50663
Mailing List mailing-list x_refsource_mlist
http://www.openwall.com/lists/oss-security/2011/11/11/6
Issue Tracking x_refsource_confirm
https://bugzilla.redhat.com/show_bug.cgi?id=753341
Mailing List mailing-list x_refsource_mlist
http://www.openwall.com/lists/oss-security/2011/11/13/4

Scores

EPSS 0.0008
EPSS Percentile 24.1%

Details

CWE
CWE-20
Status published
Products (2)
linux/linux_kernel 2.6
suse/linux_enterprise_server 10 sp4
Published Jan 27, 2012
Tracked Since Feb 18, 2026