CVE-2015-8952
Last modified
CVE-2015-8952 is a vulnerability of currently unknown severity. The mbcache feature in the ext2 and ext4 filesystem implementations in the Linux kernel before 4.6 mishandles xattr block caching, which allows local users to cause a denial of service (soft lockup) via filesystem operations in environments that use many attributes, as demonstrated by Ceph and Samba.. EPSS estimates a 0.45% chance of exploitation in the next 30 days.
Description
The mbcache feature in the ext2 and ext4 filesystem implementations in the Linux kernel before 4.6 mishandles xattr block caching, which allows local users to cause a denial of service (soft lockup) via filesystem operations in environments that use many attributes, as demonstrated by Ceph and Samba.
Metrics
Weakness Enumeration
Affected Software
| Vendor | Product | Versions |
|---|---|---|
| Linux | Linux Kernel | <= 4.5.7 |
References
- http://www.openwall.com/lists/oss-security/2016/08/22/2Third Party Advisory
- http://www.openwall.com/lists/oss-security/2016/08/25/4Patch, Third Party Advisory
- https://bugzilla.kernel.org/show_bug.cgi?id=107301Issue Tracking, Third Party Advisory
- https://bugzilla.redhat.com/show_bug.cgi?id=1360968Issue Tracking, Third Party Advisory, VDB Entry
- https://github.com/torvalds/linux/commit/be0726d33cb8f411945884664924bed3cb8c70eeIssue Tracking, Patch
- https://lwn.net/Articles/668718/Third Party Advisory
- http://www.openwall.com/lists/oss-security/2016/08/22/2Third Party Advisory
- http://www.openwall.com/lists/oss-security/2016/08/25/4Patch, Third Party Advisory
- https://bugzilla.kernel.org/show_bug.cgi?id=107301Issue Tracking, Third Party Advisory
- https://bugzilla.redhat.com/show_bug.cgi?id=1360968Issue Tracking, Third Party Advisory, VDB Entry
- https://github.com/torvalds/linux/commit/be0726d33cb8f411945884664924bed3cb8c70eeIssue Tracking, Patch
- https://lwn.net/Articles/668718/Third Party Advisory
Timeline
- Published
- Last Modified
- Status
- Modified
Frequently Asked Questions
What is CVE-2015-8952?
How severe is CVE-2015-8952?
How do I fix CVE-2015-8952?
How Strix Helps
- How Strix found a critical auth bypass in etcdStrix autonomously discovered a critical authentication bypass in etcd, later designated CVE-2026-33413.
- Autonomous PentestingAI agents that find and validate exploitable vulnerabilities like this one across your applications.
- PR ReviewsPentest every pull request so vulnerable code is caught before it ships to production.
- AI Penetration TestingHow AI-driven penetration testing continuously covers your attack surface.
Related CVEs from 2015
- CVE-2015-8946ecryptfs-setup-swap in eCryptfs before 111 does not prevent …
- CVE-2015-8947hb-ot-layout-gpos-table.hh in HarfBuzz before 1.0.5 allows r…
- CVE-2015-8948idn in GNU libidn before 1.33 might allow remote attackers t…
- CVE-2015-8949Use-after-free vulnerability in the my_login function in DBD…
- CVE-2015-8950arch/arm64/mm/dma-mapping.c in the Linux kernel before 4.0.3…
- CVE-2015-8951Multiple use-after-free vulnerabilities in sound/soc/msm/qds…
- CVE-2015-8953fs/overlayfs/copy_up.c in the Linux kernel before 4.2.6 uses…
- CVE-2015-8954The MemcmpLowercase function in Suricata before 2.0.6 improp…
- CVE-2015-8955arch/arm64/kernel/perf_event.c in the Linux kernel before 4.…7.3
- CVE-2015-8956The rfcomm_sock_bind function in net/bluetooth/rfcomm/sock.c…
- CVE-2015-8957Buffer overflow in ImageMagick before 6.9.0-4 Beta allows re…
- CVE-2015-8958coders/sun.c in ImageMagick before 6.9.0-4 Beta allows remot…
Are you affected by CVE-2015-8952?
Run a free Strix scan to check your systems for this vulnerability.
Scan your code nowSource: NVD / NIST
