CVE-2012-5374

Description

The CRC32C feature in the Btrfs implementation in the Linux kernel before 3.8-rc1 allows local users to cause a denial of service (extended runtime of kernel code) by creating many different files whose names are associated with the same CRC32C hash value.

Risk Information

Base Score
5.5
MODERATE
Vector
CVSS:3.0/AV:L/AC:L/PR:L/UI:N/S:U/C:N/I:N/A:H
EPSS Score
Exploitation Probability
0.059

Associated Vulnerability

VulnerabilityOS Platform
Linux hardware enablement kernel from Quantal (USN-1947-1) linux-image-3.5.0-40-generic_3.5.0-40.62~precise1_i386.debLinux
Linux hardware enablement kernel from Quantal (USN-1947-1) linux-image-3.5.0-40-generic_3.5.0-40.62~precise1_amd64.debLinux
Linux kernel (USN-2017-1) linux-image-3.2.0-56-generic_3.2.0-56.86_i386.debLinux
Linux kernel (USN-2017-1) linux-image-3.2.0-56-generic_3.2.0-56.86_amd64.debLinux
Linux kernel (USN-2017-1) linux-image-3.2.0-56-virtual_3.2.0-56.86_i386.debLinux
Linux kernel (USN-2017-1) linux-image-3.2.0-56-virtual_3.2.0-56.86_amd64.debLinux
Linux kernel (USN-2017-1) linux-image-3.2.0-56-generic-pae_3.2.0-56.86_i386.debLinux

Patch Details

No records found

References

https://nvd.nist.gov/vuln/detail/CVE-2023-1234
https://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2023-1234