#VU34815 Heap-based buffer overflow in Linux kernel - CVE-2011-0699
Published: February 20, 2020 / Updated: August 8, 2020
Linux kernel
Linux Foundation
Description
The vulnerability allows a remote attacker to execute arbitrary code on the target system.
The vulnerability exists due to a boundary error in Integer signedness error in the btrfs_ioctl_space_info function in the Linux kernel 2.6.37. A remote attacker can use a crafted slot value. to trigger heap-based buffer overflow and execute arbitrary code on the target system.
Successful exploitation of this vulnerability may result in complete compromise of vulnerable system.