CVE-2014-8086Race Condition in Kernel

CWE-362Race Condition10 documents8 sources
Severity
4.7MEDIUMNVD
EPSS
0.0%
top 89.40%
CISA KEV
Not in KEV
Exploit
No known exploits
Timeline
PublishedOct 13
Latest updateMay 13

Description

Race condition in the ext4_file_write_iter function in fs/ext4/file.c in the Linux kernel through 3.17 allows local users to cause a denial of service (file unavailability) via a combination of a write action and an F_SETFL fcntl operation for the O_DIRECT flag.

CVSS vector

CVSS:3.1/AV:L/AC:H/PR:L/UI:N/S:U/C:N/I:N/A:HExploitability: 1.0 | Impact: 3.6

Affected Packages3 packages

Patches

🔴Vulnerability Details

3
GHSA
GHSA-9jxp-4r84-xf98: Race condition in the ext4_file_write_iter function in fs/ext4/file2022-05-13
OSV
CVE-2014-8086: Race condition in the ext4_file_write_iter function in fs/ext4/file2014-10-13
CVEList
CVE-2014-8086: Race condition in the ext4_file_write_iter function in fs/ext4/file2014-10-13

📋Vendor Advisories

4
Ubuntu
Linux kernel (Utopic HWE) vulnerabilities2014-12-12
Ubuntu
Linux kernel vulnerabilities2014-12-12
Red Hat
Kernel: fs: ext4 race condition2014-10-09
Debian
CVE-2014-8086: linux - Race condition in the ext4_file_write_iter function in fs/ext4/file.c in the Lin...2014

💬Community

2
Bugzilla
CVE-2014-8086 Kernel: fs: ext4 race condition [fedora-all]2014-10-14
Bugzilla
CVE-2014-8086 Kernel: fs: ext4 race condition2014-10-10
CVE-2014-8086 — Race Condition in Linux Kernel | cvebase