CVE-2015-0274

Updated: 2023-11-24

CWE: Data Handling

Description:

The XFS implementation in the Linux kernel before 3.15 improperly uses an old size value during remote attribute replacement, which allows local users to cause a denial of service (transaction overrun and data corruption) or possibly gain privileges by leveraging XFS filesystem access.

CVSS3:


Vendor State

OS Vendor version Errata
Ubuntu 14.04 ESM 3.13.0-48.80 USN-2544-1
Ubuntu 14.04 3.13.0-48.80 USN-2544-1
RHEL 7 3.10.0-229.el7 RHSA-2015:0290
CentOS 7 3.10.0-229.el7 CESA-2015:0290
Oracle Linux 7 3.10.0-229.el7 ELSA-2015-0290
CentOS 7 plus 3.10.0-229.el7.centos.plus CESA-2015:0290

KernelCare State

OS Original kernel version State
OEL 7 Dell
Ready For Release
Endurance 7 eig 3.10
Ready For Release
Debian 9 backports
Will Not Fix
Debian 10 cloud
Will Not Fix
Ubuntu 14.04 ESM
Ready For Release
Ubuntu 14.04
3.13.0-41.70 show all hide all
3.13.0-44.73 3.13.0-46.75 3.13.0-43.72 3.13.0-45.74 3.13.0-46.76 3.13.0-46.77 3.13.0-46.79
Released
RHEL 7
3.10.0-123.9.3.el7 show all hide all
3.10.0-123.el7 3.10.0-123.8.1.el7 3.10.0-123.13.1.el7 3.10.0-123.6.3.el7 3.10.0-123.13.2.el7 3.10.0-123.20.1.el7 3.10.0-123.4.2.el7 3.10.0-123.1.2.el7 3.10.0-123.9.2.el7 3.10.0-123.4.4.el7
Released
CentOS 7
3.10.0-123.1.2.el7 show all hide all
3.10.0-123.4.2.el7 3.10.0-123.6.3.el7 3.10.0-123.13.1.el7 3.10.0-123.8.1.el7 3.10.0-123.9.2.el7 3.10.0-123.13.2.el7 3.10.0-123.9.3.el7 3.10.0-123.el7 3.10.0-123.4.4.el7 3.10.0-123.20.1.el7
Released
CloudLinux OS 7
3.10.0-233.1.2.lve1.3.33.4.el7 show all hide all
3.10.0-223.1.2.lve1.3.22.el7 3.10.0-223.1.2.lve1.3.33.3.el7 3.10.0-223.1.2.lve1.3.33.el7 3.10.0-233.1.2.lve1.3.33.1.el7
Released
Oracle Linux 7
3.10.0-123.20.1.el7 show all hide all
3.10.0-123.13.1.el7 3.10.0-123.13.2.el7 3.10.0-123.4.4.el7 3.10.0-123.6.3.el7 3.10.0-123.4.2.el7 3.10.0-123.9.3.el7 3.10.0-123.el7 3.10.0-123.8.1.el7 3.10.0-123.9.2.el7 3.10.0-123.1.2.el7
Released
CentOS 7 plus
3.10.0-123.8.1.el7.centos.plus show all hide all
3.10.0-123.6.3.el7.centos.plus 3.10.0-123.4.4.el7.centos.plus 3.10.0-123.13.2.el7.centos.plus 3.10.0-123.9.2.el7.centos.plus 3.10.0-123.20.1.el7.centos.plus 3.10.0-123.13.1.el7.centos.plus 3.10.0-123.9.3.el7.centos.plus 3.10.0-123.el7.centos.plus 3.10.0-123.1.2.el7.centos.plus 3.10.0-123.4.2.el7.centos.plus
Released