AUGUST 4, 2026
Live Feed
Back to database
Case File

CVE-2018-1092

MEDIUM · CVSS 5.5 EPSS 2.00%

Source: NVD + CISA KEV + EPSS (historical backfill) · Published 2018-04-02 · Last synced 2026-08-04

CyberRota Analysis

AI analysis pending.

CVE
CVE-2018-1092
Severity
MEDIUM
CVSS
5.5
EPSS
2.00%
Linux

Original NVD Description

The ext4_iget function in fs/ext4/inode.c in the Linux kernel through 4.15.15 mishandles the case of a root directory with a zero i_links_count, which allows attackers to cause a denial of service (ext4_process_freed_data NULL pointer dereference and OOPS) via a crafted ext4 image.