>> Linux Kernel "ext3fs_dirhash()" Data Stream Handling Denial of Service Issue
Title : Linux Kernel "ext3fs_dirhash()" Data Stream Handling Denial of Service Issue VUPEN ID : VUPEN/ADV-2006-4458 CVE ID : CVE-2006-6053
Rated as : Low Risk
Remotely Exploitable : No Locally Exploitable : Yes Release Date : 2006-11-12
Technical Description
A vulnerability has been identified in Linux Kernel, which could be exploited by malicious users to cause a denial of service. This flaw is due to errors in the "ext3fs_dirhash()", "ext3_readdir()", and "htree_dirblock_to_tree()" functions when handling corrupted data streams, which could be exploited by local attackers to crash a vulnerable system via a malicious ext3 image, creating a denial of service condition.