CVE-2019-5094
published 2019-09-24CVE-2019-5094: An exploitable code execution vulnerability exists in the quota file functionality of E2fsprogs 1.45.3. A specially crafted ext4 partition can cause an…
PriorityP430medium6.7CVSS 3.1
AVLACLPRHUINSUCHIHAH
EPSS
1.10%
62.1th percentile
An exploitable code execution vulnerability exists in the quota file functionality of E2fsprogs 1.45.3. A specially crafted ext4 partition can cause an out-of-bounds write on the heap, resulting in code execution. An attacker can corrupt a partition to trigger this vulnerability.
Affected
20 ranges
| Vendor | Product | Version range | Fixed in |
|---|---|---|---|
| canonical | ubuntu_linux | — | — |
| canonical | ubuntu_linux | — | — |
| canonical | ubuntu_linux | — | — |
| canonical | ubuntu_linux | — | — |
| canonical | ubuntu_linux | — | — |
| debian | debian_linux | — | — |
| debian | debian_linux | — | — |
| debian | debian_linux | — | — |
| debian | e2fsprogs | < e2fsprogs 1.45.4-1 (bookworm) | e2fsprogs 1.45.4-1 (bookworm) |
| e2fsprogs_project | e2fsprogs | — | — |
| e2fsprogs_project | e2fsprogs | >= 0 < 1.45.4-1 | 1.45.4-1 |
| e2fsprogs_project | e2fsprogs | >= 0 < 1.45.4-1 | 1.45.4-1 |
| e2fsprogs_project | e2fsprogs | >= 0 < 1.45.4-1 | 1.45.4-1 |
| e2fsprogs_project | e2fsprogs | >= 0 < 1.45.4-1 | 1.45.4-1 |
| e2fsprogs_project | e2fsprogs | 1.43.3 – 1.45.3 | — |
| fedoraproject | fedora | — | — |
| fedoraproject | fedora | — | — |
| msrc | cbl_mariner_1.0_arm | — | — |
| msrc | cbl_mariner_1.0_x64 | — | — |
| msrc | cm1_e2fsprogs_1.44.6-4_on_cbl_mariner_1.0 | — | — |
CVSS provenance
nvdv3.16.7MEDIUMCVSS:3.1/AV:L/AC:L/PR:H/UI:N/S:U/C:H/I:H/A:H
nvdv2.04.6MEDIUMAV:L/AC:L/Au:N/C:P/I:P/A:P
osv6.7MEDIUM
vendor_debian7.5HIGH
vendor_redhat7.5HIGH
vendor_msrc6.7MEDIUM
Stop checking back — get the weekly exploitation signal.
Every Monday: what got weaponized or added to CISA KEV in the last seven days — each CVE cross-linked to its PoC, Nuclei template, and detection rule. Free, one email a week, unsubscribe in one click.
CISA ICS
Siemens SIMATIC S7-1500 CPU 1518(F)-4 PN/DP MFP V3.1
cisa_ics·2023-12-14
Siemens SIMATIC S7-1500 CPU 1518(F)-4 PN/DP MFP V3.1
ICS Advisory
##
Siemens SIMATIC S7-1500 CPU 1518(F)-4 PN/DP MFP V3.1
Release DateDecember 14, 2023
Alert CodeICSA-23-348-10
As of January 10, 2023, CISA will no longer be updating ICS security advisories for Siemens product vulnerabilities beyond the initial advisory. For the most up-to-date information on vulnerabilities in this advisory, please see Siemens' ProductCERT Security Advisories (CERT Services | Services | Siemens Global).
View CSAF
## 1. EXECUTIVE SUMMARY
- CVSS v3 9.8
- ATTENTION: Exploitable remotely/low attack complexity
- Vendor: Siemens
- Equipment: SIMATIC S7-1500 CPU 1518(F)-4 PN/DP MFP V3.1
- Vulnerabilities: Improper Restriction of XML External Entity Reference, Time-of-check Time-of-use (TOCTOU) Race Condition, Command Injection, Miss
Ubuntu
e2fsprogs vulnerability
vendor_ubuntu·2019-09-30
CVE-2019-5094 e2fsprogs vulnerability
Title: e2fsprogs vulnerability
Summary: e2fsprogs could be made to execute arbitrary code if it is running in
a crafted ext4 partition.
It was discovered that e2fsprogs incorrectly handled certain ext4 partitions.
An attacker could possibly use this issue to execute arbitrary code.
Instructions: In general, a standard system update will make all the necessary changes.
Ubuntu
e2fsprogs vulnerability
vendor_ubuntu·2019-09-30
CVE-2019-5094 e2fsprogs vulnerability
Title: e2fsprogs vulnerability
Summary: e2fsprogs could be made to execute arbitrary code if it is
running in a crafted ext4 partition.
USN-4142-1 fixed a vulnerability in e2fsprogs. This update provides
the corresponding update for Ubuntu 12.04 ESM and Ubuntu 14.04 ESM.
Original advisory details:
It was discovered that e2fsprogs incorrectly handled certain ext4 partitions.
An attacker could possibly use this issue to execute arbitrary code.
Instructions: In general, a standard system update will make all the necessary changes.
Microsoft
An exploitable code execution vulnerability exists in the quota file functionality of E2fsprogs 1.45.3. A specially crafted ext4 partition can cause an out-of-bounds write on the heap resulting in cod
vendor_msrc·2019-09-10·CVSS 6.7
CVE-2019-5094 [HIGH] CWE-787 An exploitable code execution vulnerability exists in the quota file functionality of E2fsprogs 1.45.3. A specially crafted ext4 partition can cause an out-of-bounds write on the heap resulting in cod
An exploitable code execution vulnerability exists in the quota file functionality of E2fsprogs 1.45.3. A specially crafted ext4 partition can cause an out-of-bounds write on the heap resulting in code execution. An attacker can corrupt a partition to trigger this vulnerability.
FAQ: Is Azure Linux the only Microsoft product that includes this open-source library and is therefore potentially affected by this vulnerability?
One of the main benefits to our customers who choose to use the Azure Linux distro is the commitment to keep it up to date with the most recent and most secure versions of the open source libraries with which the distro is composed. Microsoft is committed to transparency in this work which is why we began publishing CSAF/VEX in October 2025. See this blog post for more
Red Hat
e2fsprogs: Crafted ext4 partition leads to out-of-bounds write
vendor_redhat·2019-08-27·CVSS 7.5
CVE-2019-5094 [HIGH] CWE-787 e2fsprogs: Crafted ext4 partition leads to out-of-bounds write
e2fsprogs: Crafted ext4 partition leads to out-of-bounds write
An exploitable code execution vulnerability exists in the quota file functionality of E2fsprogs 1.45.3. A specially crafted ext4 partition can cause an out-of-bounds write on the heap, resulting in code execution. An attacker can corrupt a partition to trigger this vulnerability.
Package: e2fsprogs (Red Hat Enterprise Linux 5) - Out of support scope
Package: e2fsprogs (Red Hat Enterprise Linux 6) - Out of support scope
Debian
CVE-2019-5094: e2fsprogs - An exploitable code execution vulnerability exists in the quota file functionali...
vendor_debian·2019·CVSS 7.5
CVE-2019-5094 [HIGH] CVE-2019-5094: e2fsprogs - An exploitable code execution vulnerability exists in the quota file functionali...
An exploitable code execution vulnerability exists in the quota file functionality of E2fsprogs 1.45.3. A specially crafted ext4 partition can cause an out-of-bounds write on the heap, resulting in code execution. An attacker can corrupt a partition to trigger this vulnerability.
Scope: local
bookworm: resolved (fixed in 1.45.4-1)
bullseye: resolved (fixed in 1.45.4-1)
forky: resolved (fixed in 1.45.4-1)
sid: resolved (fixed in 1.45.4-1)
trixie: resolved (fixed in 1.45.4-1)
GHSA
GHSA-3498-94v2-7qqw: An exploitable code execution vulnerability exists in the quota file functionality of E2fsprogs 1
ghsa_unreviewed·2022-05-24
CVE-2019-5094 [MEDIUM] CWE-787 GHSA-3498-94v2-7qqw: An exploitable code execution vulnerability exists in the quota file functionality of E2fsprogs 1
An exploitable code execution vulnerability exists in the quota file functionality of E2fsprogs 1.45.3. A specially crafted ext4 partition can cause an out-of-bounds write on the heap, resulting in code execution. An attacker can corrupt a partition to trigger this vulnerability.
OSV
CVE-2019-5094: An exploitable code execution vulnerability exists in the quota file functionality of E2fsprogs 1
osv·2019-09-24·CVSS 6.7
CVE-2019-5094 [MEDIUM] CVE-2019-5094: An exploitable code execution vulnerability exists in the quota file functionality of E2fsprogs 1
An exploitable code execution vulnerability exists in the quota file functionality of E2fsprogs 1.45.3. A specially crafted ext4 partition can cause an out-of-bounds write on the heap, resulting in code execution. An attacker can corrupt a partition to trigger this vulnerability.
No detection rules found.
No public exploits indexed.
Bugzilla
CVE-2019-5094 e2fsprogs: crafted ext4 partition leads to out-of-bounds write [fedora-all]
bugzilla·2020-01-17·CVSS 7.5
CVE-2019-5094 [HIGH] CVE-2019-5094 e2fsprogs: crafted ext4 partition leads to out-of-bounds write [fedora-all]
CVE-2019-5094 e2fsprogs: crafted ext4 partition leads to out-of-bounds write [fedora-all]
FEDORA-2020-01ed02451f has been submitted as an update to Fedora 30. https://bodhi.fedoraproject.org/updates/FEDORA-2020-01ed02451f
Discussion:
e2fsprogs-1.44.6-2.fc30 has been pushed to the Fedora 30 testing repository. If problems still persist, please make note of it in this bug report.
See https://fedoraproject.org/wiki/QA:Updates_Testing for
instructions on how to install test updates.
You can provide feedback for this update here: https://bodhi.fedoraproject.org/updates/FEDORA-2020-01ed02451f
---
e2fsprogs-1.44.6-2.fc30 has been pushed to the Fedora 30 stable repository. If problems still persist, please make note of it in this bug report.
Bugzilla
CVE-2019-5094 e2fsprogs: Crafted ext4 partition leads to out-of-bounds write
bugzilla·2019-11-04·CVSS 7.5
CVE-2019-5094 [HIGH] CVE-2019-5094 e2fsprogs: Crafted ext4 partition leads to out-of-bounds write
CVE-2019-5094 e2fsprogs: Crafted ext4 partition leads to out-of-bounds write
An exploitable code execution vulnerability exists in the quota file functionality of E2fsprogs 1.45.3. A specially crafted ext4 partition can cause an out-of-bounds write on the heap, resulting in code execution. An attacker can corrupt a partition to trigger this vulnerability.
Reference:
https://seclists.org/bugtraq/2019/Sep/58
https://talosintelligence.com/vulnerability_reports/TALOS-2019-0887
Discussion:
Created e2fsprogs tracking bugs for this issue:
Affects: fedora-all [bug 1768556]
---
This is fixed by:
commit 8dbe7b475ec5e91ed767239f0e85880f416fc384
Author: Theodore Ts'o
Date: Sun Sep 1 00:59:16 2019 -0400
libsupport: add checks to prevent buffer overrun bugs in quota code
A maliciously corrupte
Bugzilla
CVE-2019-5094 e2fsprogs: crafted ext4 partition leads to out-of-bounds write [fedora-all]
bugzilla·2019-11-04·CVSS 7.5
CVE-2019-5094 [HIGH] CVE-2019-5094 e2fsprogs: crafted ext4 partition leads to out-of-bounds write [fedora-all]
CVE-2019-5094 e2fsprogs: crafted ext4 partition leads to out-of-bounds write [fedora-all]
This is an automatically created tracking bug! It was created to ensure
that one or more security vulnerabilities are fixed in affected versions
of fedora-all.
For comments that are specific to the vulnerability please use bugs filed
against the "Security Response" product referenced in the "Blocks" field.
For more information see:
http://fedoraproject.org/wiki/Security/TrackingBugs
When submitting as an update, use the fedpkg template provided in the next
comment(s). This will include the bug IDs of this tracking bug as well as
the relevant top-level CVE bugs.
Please also mention the CVE IDs being fixed in the RPM changelog and the
fedpkg commit message.
NOTE: this issue affects multiple suppor
https://lists.debian.org/debian-lts-announce/2019/09/msg00029.htmlhttps://lists.fedoraproject.org/archives/list/package-announce%40lists.fedoraproject.org/message/2AKETJ6BREDUHRWQTV35SPGG5C6H7KSI/https://lists.fedoraproject.org/archives/list/package-announce%40lists.fedoraproject.org/message/6DOBCYQKCTTWXBLMUPJ5TX3FY7JNCOKY/https://seclists.org/bugtraq/2019/Sep/58https://security.gentoo.org/glsa/202003-05https://security.netapp.com/advisory/ntap-20200115-0002/https://talosintelligence.com/vulnerability_reports/TALOS-2019-0887https://usn.ubuntu.com/4142-1/https://usn.ubuntu.com/4142-2/https://www.debian.org/security/2019/dsa-4535https://lists.debian.org/debian-lts-announce/2019/09/msg00029.htmlhttps://lists.fedoraproject.org/archives/list/package-announce%40lists.fedoraproject.org/message/2AKETJ6BREDUHRWQTV35SPGG5C6H7KSI/https://lists.fedoraproject.org/archives/list/package-announce%40lists.fedoraproject.org/message/6DOBCYQKCTTWXBLMUPJ5TX3FY7JNCOKY/https://seclists.org/bugtraq/2019/Sep/58https://security.gentoo.org/glsa/202003-05https://security.netapp.com/advisory/ntap-20200115-0002/https://talosintelligence.com/vulnerability_reports/TALOS-2019-0887https://usn.ubuntu.com/4142-1/https://usn.ubuntu.com/4142-2/https://www.debian.org/security/2019/dsa-4535
2019-09-24
Published