CVE-2013-1819
published 2013-03-06CVE-2013-1819: The _xfs_buf_find function in fs/xfs/xfs_buf.c in the Linux kernel before 3.7.6 does not validate block numbers, which allows local users to cause a denial of…
PriorityP413medium4.6CVSS 2.0
AVLACLAuNCPIPAP
EPSS
0.44%
36.5th percentile
The _xfs_buf_find function in fs/xfs/xfs_buf.c in the Linux kernel before 3.7.6 does not validate block numbers, which allows local users to cause a denial of service (NULL pointer dereference and system crash) or possibly have unspecified other impact by leveraging the ability to mount an XFS filesystem containing a metadata inode with an invalid extent map.
Affected
151 ranges· showing 25
| Vendor | Product | Version range | Fixed in |
|---|---|---|---|
| debian | linux | < linux 3.8-1 (bookworm) | linux 3.8-1 (bookworm) |
| linux | linux_kernel | <= 3.7.5 | — |
| linux | linux_kernel | — | — |
| linux | linux_kernel | — | — |
| linux | linux_kernel | — | — |
| linux | linux_kernel | — | — |
| linux | linux_kernel | — | — |
| linux | linux_kernel | — | — |
| linux | linux_kernel | — | — |
| linux | linux_kernel | — | — |
| linux | linux_kernel | — | — |
| linux | linux_kernel | — | — |
| linux | linux_kernel | — | — |
| linux | linux_kernel | — | — |
| linux | linux_kernel | — | — |
| linux | linux_kernel | — | — |
| linux | linux_kernel | — | — |
| linux | linux_kernel | — | — |
| linux | linux_kernel | — | — |
| linux | linux_kernel | — | — |
| linux | linux_kernel | — | — |
| linux | linux_kernel | — | — |
| linux | linux_kernel | — | — |
| linux | linux_kernel | — | — |
| linux | linux_kernel | — | — |
CVSS provenance
nvdv2.04.6MEDIUMAV:L/AC:L/Au:N/C:P/I:P/A:P
osv4.6MEDIUM
vendor_debian4.6MEDIUM
vendor_redhat4.6MEDIUM
vendor_ubuntu4.6MEDIUM
Stop checking back — get the weekly exploitation signal.
Every Monday: what got weaponized or added to CISA KEV in the last seven days — each CVE cross-linked to its PoC, Nuclei template, and detection rule. Free, one email a week, unsubscribe in one click.
Ubuntu
Linux kernel vulnerabilities
vendor_ubuntu·2013-09-27·CVSS 4.6
CVE-2013-1819 [MEDIUM] Linux kernel vulnerabilities
Title: Linux kernel vulnerabilities
Summary: Several security issues were fixed in the kernel.
Vince Weaver discovered a flaw in the perf subsystem of the Linux kernel on
ARM platforms. A local user could exploit this flaw to gain privileges or
cause a denial of service (system crash). (CVE-2013-4254)
A failure to validate block numbers was discovered in the Linux kernel's
implementation of the XFS filesystem. A local user can cause a denial of
service (system crash) if they can mount, or cause to be mounted a
corrupted or special crafted XFS filesystem. (CVE-2013-1819)
An information leak was discovered in the Linux kernel when reading
broadcast messages from the notify_policy interface of the IPSec
key_socket. A local user could exploit this flaw to examine potentially
sensitive info
Ubuntu
Linux kernel (Quantal HWE) vulnerabilities
vendor_ubuntu·2013-09-27·CVSS 4.6
CVE-2013-1819 [MEDIUM] Linux kernel (Quantal HWE) vulnerabilities
Title: Linux kernel (Quantal HWE) vulnerabilities
Summary: Several security issues were fixed in the kernel.
Vince Weaver discovered a flaw in the perf subsystem of the Linux kernel on
ARM platforms. A local user could exploit this flaw to gain privileges or
cause a denial of service (system crash). (CVE-2013-4254)
A failure to validate block numbers was discovered in the Linux kernel's
implementation of the XFS filesystem. A local user can cause a denial of
service (system crash) if they can mount, or cause to be mounted a
corrupted or special crafted XFS filesystem. (CVE-2013-1819)
An information leak was discovered in the Linux kernel when reading
broadcast messages from the notify_policy interface of the IPSec
key_socket. A local user could exploit this flaw to examine potentially
Ubuntu
Linux kernel (OMAP4) vulnerabilities
vendor_ubuntu·2013-09-27·CVSS 4.6
CVE-2013-1819 [MEDIUM] Linux kernel (OMAP4) vulnerabilities
Title: Linux kernel (OMAP4) vulnerabilities
Summary: Several security issues were fixed in the kernel.
Vince Weaver discovered a flaw in the perf subsystem of the Linux kernel on
ARM platforms. A local user could exploit this flaw to gain privileges or
cause a denial of service (system crash). (CVE-2013-4254)
A failure to validate block numbers was discovered in the Linux kernel's
implementation of the XFS filesystem. A local user can cause a denial of
service (system crash) if they can mount, or cause to be mounted a
corrupted or special crafted XFS filesystem. (CVE-2013-1819)
An information leak was discovered in the Linux kernel when reading
broadcast messages from the notify_policy interface of the IPSec
key_socket. A local user could exploit this flaw to examine potentially
sensit
Ubuntu
Linux kernel (OMAP4) vulnerabilities
vendor_ubuntu·2013-09-27·CVSS 4.6
CVE-2013-1819 [MEDIUM] Linux kernel (OMAP4) vulnerabilities
Title: Linux kernel (OMAP4) vulnerabilities
Summary: Several security issues were fixed in the kernel.
Vince Weaver discovered a flaw in the perf subsystem of the Linux kernel on
ARM platforms. A local user could exploit this flaw to gain privileges or
cause a denial of service (system crash). (CVE-2013-4254)
A failure to validate block numbers was discovered in the Linux kernel's
implementation of the XFS filesystem. A local user can cause a denial of
service (system crash) if they can mount, or cause to be mounted a
corrupted or special crafted XFS filesystem. (CVE-2013-1819)
Instructions: After a standard system update you need to reboot your computer to make
all the necessary changes.
ATTENTION: Due to an unavoidable ABI change the kernel updates have
been given a new version numb
Ubuntu
Linux kernel vulnerabilities
vendor_ubuntu·2013-09-27·CVSS 4.6
CVE-2013-1819 [MEDIUM] Linux kernel vulnerabilities
Title: Linux kernel vulnerabilities
Summary: Several security issues were fixed in the kernel.
Vince Weaver discovered a flaw in the perf subsystem of the Linux kernel on
ARM platforms. A local user could exploit this flaw to gain privileges or
cause a denial of service (system crash). (CVE-2013-4254)
A failure to validate block numbers was discovered in the Linux kernel's
implementation of the XFS filesystem. A local user can cause a denial of
service (system crash) if they can mount, or cause to be mounted a
corrupted or special crafted XFS filesystem. (CVE-2013-1819)
Instructions: After a standard system update you need to reboot your computer to make
all the necessary changes.
ATTENTION: Due to an unavoidable ABI change the kernel updates have
been given a new version number, whic
Red Hat
kernel: xfs: _xfs_buf_find oops on blocks beyond the filesystem end
vendor_redhat·2013-01-21·CVSS 4.6
CVE-2013-1819 [MEDIUM] CWE-476 kernel: xfs: _xfs_buf_find oops on blocks beyond the filesystem end
kernel: xfs: _xfs_buf_find oops on blocks beyond the filesystem end
The _xfs_buf_find function in fs/xfs/xfs_buf.c in the Linux kernel before 3.7.6 does not validate block numbers, which allows local users to cause a denial of service (NULL pointer dereference and system crash) or possibly have unspecified other impact by leveraging the ability to mount an XFS filesystem containing a metadata inode with an invalid extent map.
Statement: This issue does not affect the versions of the Linux kernel as shipped with Red Hat Enterprise Linux 5.
This issue affects the version of Linux kernel as shipped with Red Hat Enterprise Linux 6 and Red Hat Enterprise MRG 2. Due to it's limited impact, this issue is not currently planned to be addressed in Red Hat Enterprise Linux 6.
Package: kernel (Red
Debian
CVE-2013-1819: linux - The _xfs_buf_find function in fs/xfs/xfs_buf.c in the Linux kernel before 3.7.6 ...
vendor_debian·2013·CVSS 4.6
CVE-2013-1819 [MEDIUM] CVE-2013-1819: linux - The _xfs_buf_find function in fs/xfs/xfs_buf.c in the Linux kernel before 3.7.6 ...
The _xfs_buf_find function in fs/xfs/xfs_buf.c in the Linux kernel before 3.7.6 does not validate block numbers, which allows local users to cause a denial of service (NULL pointer dereference and system crash) or possibly have unspecified other impact by leveraging the ability to mount an XFS filesystem containing a metadata inode with an invalid extent map.
Scope: local
bookworm: resolved (fixed in 3.8-1)
bullseye: resolved (fixed in 3.8-1)
forky: resolved (fixed in 3.8-1)
sid: resolved (fixed in 3.8-1)
trixie: resolved (fixed in 3.8-1)
GHSA
GHSA-5fpr-g7qq-496f: The _xfs_buf_find function in fs/xfs/xfs_buf
ghsa_unreviewed·2022-05-17
CVE-2013-1819 [MEDIUM] CWE-20 GHSA-5fpr-g7qq-496f: The _xfs_buf_find function in fs/xfs/xfs_buf
The _xfs_buf_find function in fs/xfs/xfs_buf.c in the Linux kernel before 3.7.6 does not validate block numbers, which allows local users to cause a denial of service (NULL pointer dereference and system crash) or possibly have unspecified other impact by leveraging the ability to mount an XFS filesystem containing a metadata inode with an invalid extent map.
OSV
CVE-2013-1819: The _xfs_buf_find function in fs/xfs/xfs_buf
osv·2013-03-06·CVSS 4.6
CVE-2013-1819 [MEDIUM] CVE-2013-1819: The _xfs_buf_find function in fs/xfs/xfs_buf
The _xfs_buf_find function in fs/xfs/xfs_buf.c in the Linux kernel before 3.7.6 does not validate block numbers, which allows local users to cause a denial of service (NULL pointer dereference and system crash) or possibly have unspecified other impact by leveraging the ability to mount an XFS filesystem containing a metadata inode with an invalid extent map.
No detection rules found.
No public exploits indexed.
Bugzilla
CVE-2013-1819 kernel: xfs: _xfs_buf_find oops on blocks beyond the filesystem end
bugzilla·2013-03-05·CVSS 4.6
CVE-2013-1819 [MEDIUM] CVE-2013-1819 kernel: xfs: _xfs_buf_find oops on blocks beyond the filesystem end
CVE-2013-1819 kernel: xfs: _xfs_buf_find oops on blocks beyond the filesystem end
Linux kernel built with support for XFS file system is vulnerable to a NULL
pointer dereference flaw. This occurs while accessing blocks beyond the end
of the file system, possibly on a corrupted device.
A user able to mount the file system could use this flaw to crash the kernel, resulting in DoS.
Upstream fix:
-> https://git.kernel.org/linus/eb178619f930fa2ba2348de332a1ff1c66a31424
Discussion:
The CVE identifier of CVE-2013-1819 has been assigned to this issue:
http://www.openwall.com/lists/oss-security/2013/03/05/10
---
Created kernel tracking bugs for this issue
Affects: fedora-all [bug 918070]
---
Statement:
This issue does not affect the versions of the Linux kernel as shipped with Red Hat En
Bugzilla
CVE-2013-1819 kernel: xfs: _xfs_buf_find oops on blocks beyond the filesystem end [fedora-all]
bugzilla·2013-03-05·CVSS 4.6
CVE-2013-1819 [MEDIUM] CVE-2013-1819 kernel: xfs: _xfs_buf_find oops on blocks beyond the filesystem end [fedora-all]
CVE-2013-1819 kernel: xfs: _xfs_buf_find oops on blocks beyond the filesystem end [fedora-all]
This is an automatically created tracking bug! It was created to ensure
that one or more security vulnerabilities are fixed in affected versions
of Fedora.
For comments that are specific to the vulnerability please use bugs filed
against the "Security Response" product referenced in the "Blocks" field.
For more information see:
http://fedoraproject.org/wiki/Security/TrackingBugs
When creating a Bodhi update request, please use the bodhi submission link
noted in the next comment(s). This will include the bug IDs of this
tracking bug as well as the relevant top-level CVE bugs.
Please also mention the CVE IDs being fixed in the RPM changelog and the
Bodhi notes field when available.
Please not
http://git.kernel.org/?p=linux/kernel/git/torvalds/linux-2.6.git%3Ba=commit%3Bh=eb178619f930fa2ba2348de332a1ff1c66a31424http://lists.opensuse.org/opensuse-security-announce/2013-09/msg00003.htmlhttp://lists.opensuse.org/opensuse-security-announce/2013-09/msg00004.htmlhttp://lists.opensuse.org/opensuse-updates/2013-12/msg00129.htmlhttp://www.kernel.org/pub/linux/kernel/v3.x/ChangeLog-3.7.6http://www.openwall.com/lists/oss-security/2013/03/05/10http://www.ubuntu.com/usn/USN-1968-1http://www.ubuntu.com/usn/USN-1969-1http://www.ubuntu.com/usn/USN-1970-1http://www.ubuntu.com/usn/USN-1972-1http://www.ubuntu.com/usn/USN-1973-1http://www.ubuntu.com/usn/USN-1975-1https://bugzilla.redhat.com/show_bug.cgi?id=918009https://github.com/torvalds/linux/commit/eb178619f930fa2ba2348de332a1ff1c66a31424http://git.kernel.org/?p=linux/kernel/git/torvalds/linux-2.6.git%3Ba=commit%3Bh=eb178619f930fa2ba2348de332a1ff1c66a31424http://lists.opensuse.org/opensuse-security-announce/2013-09/msg00003.htmlhttp://lists.opensuse.org/opensuse-security-announce/2013-09/msg00004.htmlhttp://lists.opensuse.org/opensuse-updates/2013-12/msg00129.htmlhttp://www.kernel.org/pub/linux/kernel/v3.x/ChangeLog-3.7.6http://www.openwall.com/lists/oss-security/2013/03/05/10http://www.ubuntu.com/usn/USN-1968-1http://www.ubuntu.com/usn/USN-1969-1http://www.ubuntu.com/usn/USN-1970-1http://www.ubuntu.com/usn/USN-1972-1http://www.ubuntu.com/usn/USN-1973-1http://www.ubuntu.com/usn/USN-1975-1https://bugzilla.redhat.com/show_bug.cgi?id=918009https://github.com/torvalds/linux/commit/eb178619f930fa2ba2348de332a1ff1c66a31424
2013-03-06
Published