Goal Reached Thanks to every supporter — we hit 100%!

Goal: 1000 CNY · Raised: 1000 CNY

100.0%

CVE-2009-4307

EPSS 3.36% · P87
Get alerts for future matching vulnerabilitiesLog in to subscribe

I. Basic Information for CVE-2009-4307

Vulnerability Information

Have questions about the vulnerability? See if Shenlong's analysis helps!
View Shenlong Deep Dive ↗

Although we use advanced large model technology, its output may still contain inaccurate or outdated information.Shenlong tries to ensure data accuracy, but please verify and judge based on the actual situation.

Vulnerability Title
N/A
Source: NVD (National Vulnerability Database)
Vulnerability Description
The ext4_fill_flex_info function in fs/ext4/super.c in the Linux kernel before 2.6.32-git6 allows user-assisted remote attackers to cause a denial of service (divide-by-zero error and panic) via a malformed ext4 filesystem containing a super block with a large FLEX_BG group size (aka s_log_groups_per_flex value).
Source: NVD (National Vulnerability Database)
CVSS Information
N/A
Source: NVD (National Vulnerability Database)
Vulnerability Type
N/A
Source: NVD (National Vulnerability Database)
Vulnerability Title
Linux kernel 'super.c' ext4_fill_flex_info函数拒绝服务漏洞
Source: CNNVD (China National Vulnerability Database)
Vulnerability Description
Linux是最受欢迎的自由电脑操作系统内核。Linux kernel中的fs/ext4/super.c中的ext4_fill_flex_info函数使用户协助式远程攻击者可以借助一个包含大FLEX_BG组装(又称s_log_groups_per_flex值)的超大阻滞的畸形的ext4文件系统引起一个拒绝服务(被零除错误和恐慌)。
Source: CNNVD (China National Vulnerability Database)
CVSS Information
N/A
Source: CNNVD (China National Vulnerability Database)
Vulnerability Type
N/A
Source: CNNVD (China National Vulnerability Database)

Affected Products

VendorProductAffected VersionsCPESubscribe
-n/a n/a -

II. Public POCs for CVE-2009-4307

#POC DescriptionSource LinkShenlong Link
AI-Generated POCPremium

No public POC found.

Login to generate AI POC

III. Intelligence Information for CVE-2009-4307

登录查看更多情报信息。

Same Patch Batch · n/a · 2009-12-13 · 10 CVEs total

CVE-2009-4131Linux kernel 权限许可和访问控制问题漏洞
CVE-2009-4210Microsoft Windows 2000 SP4代码注入漏洞
CVE-2009-4306Linux kernel ext4 未明漏洞EXT4_IOC_MOVE_EXT ioctl未明拒绝服务漏洞
CVE-2009-4308Linux kernel 'super.c'ext4_decode_error函数拒绝服务漏洞
CVE-2009-4309microsoft windows_media_player 缓冲区溢出漏洞
CVE-2009-4310Microsoft Windows 2000 Windows Media Player Intel Indeo41 codec人工压缩视频数据堆缓冲溢出漏洞
CVE-2009-4311Microsoft Windows 2000 Indeo codec人工多媒体目录未明漏洞
CVE-2009-4312Microsoft Windows 2000 Indeo codec人工多媒体目录未明漏洞
CVE-2009-4313Microsoft Windows 2000 Indeo32 codec畸形数据拒绝服务漏洞

IV. Related Vulnerabilities

V. Comments for CVE-2009-4307

No comments yet


Leave a comment