CVE-2013-2015 describes a denial-of-service vulnerability in the Linux kernel's ext4 filesystem, specifically affecting the ext4_orphan_del function. This flaw allows physically proximate attackers to cause a system hang by presenting a crafted filesystem on removable media. Rated with a CVSS score of 4.7, it requires local access and medium attack complexity to achieve a complete system availability impact. There is no evidence of active exploitation, nor are there known public exploits in Metasploit, Nuclei, or ExploitDB, though it has garnered some community discussion.
| Vendor | Product | Version(s) | CPE |
|---|---|---|---|
<= 3.7.2CPE matchmatch criteria | cpe:2.3:o:linux:linux_kernel:*:*:*:*:*:*:*:* | ||
3.0CPE matchmatch criteria | cpe:2.3:o:linux:linux_kernel:3.0:rc1:*:*:*:*:*:* | ||
3.0CPE matchmatch criteria | cpe:2.3:o:linux:linux_kernel:3.0:rc2:*:*:*:*:*:* | ||
3.0CPE matchmatch criteria | cpe:2.3:o:linux:linux_kernel:3.0:rc3:*:*:*:*:*:* | ||
3.0CPE matchmatch criteria | cpe:2.3:o:linux:linux_kernel:3.0:rc4:*:*:*:*:*:* |
CVSS version used by this source: 2.0
AV:L/AC:M/Au:N/C:N/I:N/A:C
The average CVE in this peer group has 0.0 Twitter, 0.0 Reddit, 0.0 Bluesky, 0.0 Mastodon, and 0.1 GitHub mentions.
No media coverage found for this CVE.
The average CVE in this peer group has 0.0 InfoSec Media, 0.0 Vendor Blog, and 0.0 Security Researcher mentions.