CVE-2012-3400
published 2012-10-03CVE-2012-3400: Heap-based buffer overflow in the udf_load_logicalvol function in fs/udf/super.c in the Linux kernel before 3.4.5 allows remote attackers to cause a denial of…
PriorityP343high7.6CVSS 2.0
AVNACHAuNCCICAC
EPSS
8.74%
94.6th percentile
Heap-based buffer overflow in the udf_load_logicalvol function in fs/udf/super.c in the Linux kernel before 3.4.5 allows remote attackers to cause a denial of service (system crash) or possibly have unspecified other impact via a crafted UDF filesystem.
Affected
11 ranges
| Vendor | Product | Version range | Fixed in |
|---|---|---|---|
| canonical | ubuntu_linux | — | — |
| canonical | ubuntu_linux | — | — |
| canonical | ubuntu_linux | — | — |
| debian | linux | < linux 3.2.23-1 (bookworm) | linux 3.2.23-1 (bookworm) |
| linux | linux_kernel | < 3.0.37 | 3.0.37 |
| linux | linux_kernel | >= 0 < 3.2.23-1 | 3.2.23-1 |
| linux | linux_kernel | >= 0 < 3.2.23-1 | 3.2.23-1 |
| linux | linux_kernel | >= 0 < 3.2.23-1 | 3.2.23-1 |
| linux | linux_kernel | >= 0 < 3.2.23-1 | 3.2.23-1 |
| linux | linux_kernel | >= 3.1 < 3.2.23 | 3.2.23 |
| linux | linux_kernel | >= 3.4 < 3.4.5 | 3.4.5 |
CVSS provenance
nvdv2.07.6HIGHAV:N/AC:H/Au:N/C:C/I:C/A:C
osv7.6HIGH
vendor_ubuntu7.8HIGH
vendor_debian7.6HIGH
vendor_redhat7.6HIGH
Stop checking back — get the weekly exploitation signal.
Every Monday: what got weaponized or added to CISA KEV in the last seven days — each CVE cross-linked to its PoC, Nuclei template, and detection rule. Free, one email a week, unsubscribe in one click.
Ubuntu
Linux kernel (Natty backport) vulnerability
vendor_ubuntu·2012-09-10
CVE-2012-3400 Linux kernel (Natty backport) vulnerability
Title: Linux kernel (Natty backport) vulnerability
Summary: The system could be made to crash under certain conditions.
Some errors where discovered in the Linux kernel's UDF file system, which
is used to mount some CD-ROMs and DVDs. An unprivileged local user could
use these flaws to crash the system.
Instructions: After a standard system update you need to reboot your computer to make
all the necessary changes.
Ubuntu
Linux kernel vulnerability
vendor_ubuntu·2012-09-07
CVE-2012-3400 Linux kernel vulnerability
Title: Linux kernel vulnerability
Summary: The system could be made to crash under certain conditions.
Some errors where discovered in the Linux kernel's UDF file system, which
is used to mount some CD-ROMs and DVDs. An unprivileged local user could
use these flaws to crash the system.
Instructions: After a standard system update you need to reboot your computer to make
all the necessary changes.
Ubuntu
Linux kernel (EC2) vulnerabilities
vendor_ubuntu·2012-09-06·CVSS 7.8
CVE-2012-0044 [HIGH] Linux kernel (EC2) vulnerabilities
Title: Linux kernel (EC2) vulnerabilities
Summary: Several security issues were fixed in the kernel.
Chen Haogang discovered an integer overflow that could result in memory
corruption. A local unprivileged user could use this to crash the system.
(CVE-2012-0044)
A flaw was found in the Linux kernel's Reliable Datagram Sockets (RDS)
protocol implementation. A local, unprivileged user could use this flaw to
cause a denial of service. (CVE-2012-2372)
Some errors where discovered in the Linux kernel's UDF file system, which
is used to mount some CD-ROMs and DVDs. An unprivileged local user could
use these flaws to crash the system. (CVE-2012-3400)
Instructions: After a standard system update you need to reboot your computer to make
all the necessary changes.
Ubuntu
Linux kernel vulnerabilities
vendor_ubuntu·2012-09-05·CVSS 7.8
CVE-2012-0044 [HIGH] Linux kernel vulnerabilities
Title: Linux kernel vulnerabilities
Summary: Several security issues were fixed in the kernel.
Chen Haogang discovered an integer overflow that could result in memory
corruption. A local unprivileged user could use this to crash the system.
(CVE-2012-0044)
A flaw was found in the Linux kernel's Reliable Datagram Sockets (RDS)
protocol implementation. A local, unprivileged user could use this flaw to
cause a denial of service. (CVE-2012-2372)
Some errors where discovered in the Linux kernel's UDF file system, which
is used to mount some CD-ROMs and DVDs. An unprivileged local user could
use these flaws to crash the system. (CVE-2012-3400)
Instructions: After a standard system update you need to reboot your computer to make
all the necessary changes.
Ubuntu
Linux kernel (Oneiric backport) vulnerabilities
vendor_ubuntu·2012-08-14·CVSS 7.2
CVE-2012-2136 [HIGH] Linux kernel (Oneiric backport) vulnerabilities
Title: Linux kernel (Oneiric backport) vulnerabilities
Summary: Several security issues were fixed in the kernel.
An error was discovered in the Linux kernel's network TUN/TAP device
implementation. A local user with access to the TUN/TAP interface (which is
not available to unprivileged users until granted by a root user) could
exploit this flaw to crash the system or potential gain administrative
privileges. (CVE-2012-2136)
Ulrich Obergfell discovered an error in the Linux kernel's memory
management subsystem on 32 bit PAE systems with more than 4GB of memory
installed. A local unprivileged user could exploit this flaw to crash the
system. (CVE-2012-2373)
An error was discovered in the Linux kernel's memory subsystem (hugetlb).
An unprivileged local user could exploit this flaw to ca
Ubuntu
Linux kernel vulnerabilities
vendor_ubuntu·2012-08-10·CVSS 5.2
CVE-2012-2119 [MEDIUM] Linux kernel vulnerabilities
Title: Linux kernel vulnerabilities
Summary: Several security issues were fixed in the kernel.
A flaw was discovered in the Linux kernel's macvtap device driver, which is
used in KVM (Kernel-based Virtual Machine) to create a network bridge
between host and guest. A privleged user in a guest could exploit this flaw
to crash the host, if the vhost_net module is loaded with the
experimental_zcopytx option enabled. (CVE-2012-2119)
An error was discovered in the Linux kernel's network TUN/TAP device
implementation. A local user with access to the TUN/TAP interface (which is
not available to unprivileged users until granted by a root user) could
exploit this flaw to crash the system or potential gain administrative
privileges. (CVE-2012-2136)
A flaw was found in how the Linux kernel's KVM (
Ubuntu
Linux kernel vulnerabilities
vendor_ubuntu·2012-08-10·CVSS 7.2
CVE-2012-2136 [HIGH] Linux kernel vulnerabilities
Title: Linux kernel vulnerabilities
Summary: Several security issues were fixed in the kernel.
An error was discovered in the Linux kernel's network TUN/TAP device
implementation. A local user with access to the TUN/TAP interface (which is
not available to unprivileged users until granted by a root user) could
exploit this flaw to crash the system or potential gain administrative
privileges. (CVE-2012-2136)
Ulrich Obergfell discovered an error in the Linux kernel's memory
management subsystem on 32 bit PAE systems with more than 4GB of memory
installed. A local unprivileged user could exploit this flaw to crash the
system. (CVE-2012-2373)
An error was discovered in the Linux kernel's memory subsystem (hugetlb).
An unprivileged local user could exploit this flaw to cause a denial of
ser
Ubuntu
Linux kernel (OMAP4) vulnerabilities
vendor_ubuntu·2012-08-10·CVSS 5.2
CVE-2012-2119 [MEDIUM] Linux kernel (OMAP4) vulnerabilities
Title: Linux kernel (OMAP4) vulnerabilities
Summary: Several security issues were fixed in the kernel.
A flaw was discovered in the Linux kernel's macvtap device driver, which is
used in KVM (Kernel-based Virtual Machine) to create a network bridge
between host and guest. A privleged user in a guest could exploit this flaw
to crash the host, if the vhost_net module is loaded with the
experimental_zcopytx option enabled. (CVE-2012-2119)
An error was discovered in the Linux kernel's network TUN/TAP device
implementation. A local user with access to the TUN/TAP interface (which is
not available to unprivileged users until granted by a root user) could
exploit this flaw to crash the system or potential gain administrative
privileges. (CVE-2012-2136)
A flaw was found in how the Linux kernel
Ubuntu
Linux kernel (OMAP4) vulnerabilities
vendor_ubuntu·2012-08-10·CVSS 7.2
CVE-2012-2136 [HIGH] Linux kernel (OMAP4) vulnerabilities
Title: Linux kernel (OMAP4) vulnerabilities
Summary: Several security issues were fixed in the kernel.
An error was discovered in the Linux kernel's network TUN/TAP device
implementation. A local user with access to the TUN/TAP interface (which is
not available to unprivileged users until granted by a root user) could
exploit this flaw to crash the system or potential gain administrative
privileges. (CVE-2012-2136)
Ulrich Obergfell discovered an error in the Linux kernel's memory
management subsystem on 32 bit PAE systems with more than 4GB of memory
installed. A local unprivileged user could exploit this flaw to crash the
system. (CVE-2012-2373)
A flaw was discovered in the Linux kernel's epoll system call. An
unprivileged local user could use this flaw to crash the system.
(CVE-2012-
Red Hat
kernel: udf: buffer overflow when parsing sparing table
vendor_redhat·2012-06-27·CVSS 7.6
CVE-2012-3400 [HIGH] kernel: udf: buffer overflow when parsing sparing table
kernel: udf: buffer overflow when parsing sparing table
Heap-based buffer overflow in the udf_load_logicalvol function in fs/udf/super.c in the Linux kernel before 3.4.5 allows remote attackers to cause a denial of service (system crash) or possibly have unspecified other impact via a crafted UDF filesystem.
Statement: This issue does affect the versions of the Linux kernel as shipped with Red
Hat Enterprise Linux 5, 6 and Red Hat Enterprise MRG 2.
The Red Hat Security Response Team has rated this issue as having low security
impact. A future kernel updates may address this issue. For additional
information, refer to the Issue Severity Classification:
https://access.redhat.com/security/updates/classification/.
Package: kernel (Red Hat Enterprise Linux 4) - Will not fix
Package: kernel-
Debian
CVE-2012-3400: linux - Heap-based buffer overflow in the udf_load_logicalvol function in fs/udf/super.c...
vendor_debian·2012·CVSS 7.6
CVE-2012-3400 [HIGH] CVE-2012-3400: linux - Heap-based buffer overflow in the udf_load_logicalvol function in fs/udf/super.c...
Heap-based buffer overflow in the udf_load_logicalvol function in fs/udf/super.c in the Linux kernel before 3.4.5 allows remote attackers to cause a denial of service (system crash) or possibly have unspecified other impact via a crafted UDF filesystem.
Scope: local
bookworm: resolved (fixed in 3.2.23-1)
bullseye: resolved (fixed in 3.2.23-1)
forky: resolved (fixed in 3.2.23-1)
sid: resolved (fixed in 3.2.23-1)
trixie: resolved (fixed in 3.2.23-1)
GHSA
GHSA-7p37-mp27-9qc9: Heap-based buffer overflow in the udf_load_logicalvol function in fs/udf/super
ghsa_unreviewed·2022-05-17
CVE-2012-3400 [HIGH] CWE-119 GHSA-7p37-mp27-9qc9: Heap-based buffer overflow in the udf_load_logicalvol function in fs/udf/super
Heap-based buffer overflow in the udf_load_logicalvol function in fs/udf/super.c in the Linux kernel before 3.4.5 allows remote attackers to cause a denial of service (system crash) or possibly have unspecified other impact via a crafted UDF filesystem.
OSV
CVE-2012-3400: Heap-based buffer overflow in the udf_load_logicalvol function in fs/udf/super
osv·2012-10-03·CVSS 7.6
CVE-2012-3400 [HIGH] CVE-2012-3400: Heap-based buffer overflow in the udf_load_logicalvol function in fs/udf/super
Heap-based buffer overflow in the udf_load_logicalvol function in fs/udf/super.c in the Linux kernel before 3.4.5 allows remote attackers to cause a denial of service (system crash) or possibly have unspecified other impact via a crafted UDF filesystem.
No detection rules found.
No public exploits indexed.
Bugzilla
CVE-2012-3400 kernel: udf: buffer overflow when parsing sparing table [fedora-all]
bugzilla·2012-07-25·CVSS 7.6
CVE-2012-3400 [HIGH] CVE-2012-3400 kernel: udf: buffer overflow when parsing sparing table [fedora-all]
CVE-2012-3400 kernel: udf: buffer overflow when parsing sparing table [fedora-all]
This is an automatically created tracking bug! It was created to ensure
that one or more security vulnerabilities are fixed in affected Fedora
versions.
For comments that are specific to the vulnerability please use bugs filed
against "Security Response" product referenced in the "Blocks" field.
For more information see:
http://fedoraproject.org/wiki/Security/TrackingBugs
When creating a Bodhi update request, please include this bug ID and the
bug IDs of this bug's parent bugs filed against the "Security Response"
product (the top-level CVE bugs). Please mention the CVE IDs being fixed
in the RPM changelog when available.
Bodhi update submission link:
https://admin.fedoraproject.org/updates/new/?type_=s
Bugzilla
CVE-2012-3400 kernel: udf: buffer overflow when parsing sparing table
bugzilla·2012-07-25·CVSS 7.6
CVE-2012-3400 [HIGH] CVE-2012-3400 kernel: udf: buffer overflow when parsing sparing table
CVE-2012-3400 kernel: udf: buffer overflow when parsing sparing table
Description of problem:
A specially-crafted UDF filesystem could cause buffer overflow when parsing sparing tables in udf_load_logicalvol()@fs/udf/super.c.
The bug is fixed in upstream kernel via the following commits:
commit 1df2ae31c724e57be9d7ac00d78db8a5dabdd050
Author: Jan Kara
Date: Wed Jun 27 21:23:07 2012 +0200
udf: Fortify loading of sparing table
Add sanity checks when loading sparing table from disk to avoid accessing
unallocated memory or writing to it.
and
commit adee11b2085bee90bd8f4f52123ffb07882d6256
Author: Jan Kara
Date: Wed Jun 27 20:20:22 2012 +0200
udf: Avoid run away loop when partition table length is corrupted
Check provided length of partition table so that (possibly maliciously)
corru
http://git.kernel.org/?p=linux/kernel/git/torvalds/linux-2.6.git%3Ba=commit%3Bh=1df2ae31c724e57be9d7ac00d78db8a5dabdd050http://git.kernel.org/?p=linux/kernel/git/torvalds/linux-2.6.git%3Ba=commit%3Bh=adee11b2085bee90bd8f4f52123ffb07882d6256http://kb.juniper.net/InfoCenter/index?page=content&id=JSA10691http://lists.opensuse.org/opensuse-security-announce/2015-04/msg00020.htmlhttp://rhn.redhat.com/errata/RHSA-2013-0594.htmlhttp://secunia.com/advisories/50506http://ubuntu.com/usn/usn-1529-1http://www.kernel.org/pub/linux/kernel/v3.x/ChangeLog-3.4.5http://www.openwall.com/lists/oss-security/2012/07/10/2http://www.ubuntu.com/usn/USN-1555-1http://www.ubuntu.com/usn/USN-1556-1http://www.ubuntu.com/usn/USN-1557-1https://bugzilla.redhat.com/show_bug.cgi?id=843139https://github.com/torvalds/linux/commit/1df2ae31c724e57be9d7ac00d78db8a5dabdd050https://github.com/torvalds/linux/commit/adee11b2085bee90bd8f4f52123ffb07882d6256http://git.kernel.org/?p=linux/kernel/git/torvalds/linux-2.6.git%3Ba=commit%3Bh=1df2ae31c724e57be9d7ac00d78db8a5dabdd050http://git.kernel.org/?p=linux/kernel/git/torvalds/linux-2.6.git%3Ba=commit%3Bh=adee11b2085bee90bd8f4f52123ffb07882d6256http://kb.juniper.net/InfoCenter/index?page=content&id=JSA10691http://lists.opensuse.org/opensuse-security-announce/2015-04/msg00020.htmlhttp://rhn.redhat.com/errata/RHSA-2013-0594.htmlhttp://secunia.com/advisories/50506http://ubuntu.com/usn/usn-1529-1http://www.kernel.org/pub/linux/kernel/v3.x/ChangeLog-3.4.5http://www.openwall.com/lists/oss-security/2012/07/10/2http://www.ubuntu.com/usn/USN-1555-1http://www.ubuntu.com/usn/USN-1556-1http://www.ubuntu.com/usn/USN-1557-1https://bugzilla.redhat.com/show_bug.cgi?id=843139https://github.com/torvalds/linux/commit/1df2ae31c724e57be9d7ac00d78db8a5dabdd050https://github.com/torvalds/linux/commit/adee11b2085bee90bd8f4f52123ffb07882d6256
2012-10-03
Published