Oval Definition:oval:com.ubuntu.artful:def:201610208000
Revision Date:2017-02-06Version:1
Title:CVE-2016-10208 on Ubuntu 17.10 (artful) - low.
Description:The ext4_fill_super function in fs/ext4/super.c in the Linux kernel through 4.9.8 does not properly validate meta block groups, which allows physically proximate attackers to cause a denial of service (out-of-bounds read and system crash) via a crafted ext4 image. Ralf Spenneberg discovered that the ext4 implementation in the Linux kernel did not properly validate meta block groups. An attacker with physical access could use this to specially craft an ext4 image that causes a denial of service (system crash).
Family:unixClass:vulnerability
Status:Reference(s):CVE-2016-10208
Platform(s):Ubuntu 17.10
Product(s):
Definition Synopsis
  • Ubuntu 17.10 (artful) is installed.
  • AND Package Information
  • NOT While related to the CVE in some way, the 'linux' package in artful is not affected (note: '4.10.0-19.21').
  • OR NOT While related to the CVE in some way, the 'linux-raspi2' package in artful is not affected (note: '4.10.0-1004.6').
  • OR NOT While related to the CVE in some way, the 'linux-snapdragon' package in artful is not affected (note: '4.4.0-1055.59').
  • BACK