FlawAtlas
Search the atlas
USN-7296-1 Not scored

linux, linux-hwe vulnerability

Attila Szász discovered that the HFS+ file system implementation in the Linux Kernel contained a heap overflow vulnerability. An attacker could use a specially crafted file system image that, when mounted, could cause a denial of service (system crash) or possibly execute arbitrary code.

Exploit probability Not scored
Published February 25, 2025
Required by Not available
Last source change June 25, 2026

02 / AFFECTED SOFTWARE

Affected packages

Ubuntu:Pro:16.04:LTS linux-hwe

148 explicit affected versions

Ubuntu:Pro:18.04:LTS linux

134 explicit affected versions

03 / CONNECTIONS

Connected vulnerabilities

04 / EVIDENCE

Source records

Open Source Vulnerabilities USN-7296-1

Attila Szász discovered that the HFS+ file system implementation in the Linux Kernel contained a heap overflow vulnerability. An attacker could use a specially crafted file system image that, when mounted, could cause a denial of service (system crash) or possibly execute arbitrary code.

View original source

05 / REFERENCES

Further evidence