CVE-2013-1848 kernel: ext3: format string issues

Solution Unverified - Updated -

Issue

The MITRE CVE dictionary describes this issue as:

fs/ext3/super.c in the Linux kernel before 3.8.4 uses incorrect arguments to functions in certain circumstances related to printk input, which allows local users to conduct format-string attacks and possibly gain privileges via a crafted application.

Environment

  • Red Hat Enterprise Linux (RHEL) 6
  • Red Hat MRG 2 (kernel-rt)

Please note, this issue did not affect the versions of the kernel package as shipped with RHEL 5 because Red Hat did not backport the commit 4cf46b67eb, which introduced this issue.

Subscriber exclusive content

A Red Hat subscription provides unlimited access to our knowledgebase, tools, and much more.

Current Customers and Partners

Log in for full access

Log In

New to Red Hat?

Learn more about Red Hat subscriptions

Using a Red Hat product through a public cloud?

How to access this content