Unrated severityNVD Advisory· Published Dec 26, 2014· Updated Jun 17, 2026
CVE-2014-9420
CVE-2014-9420
Description
The rock_continue function in fs/isofs/rock.c in the Linux kernel through 3.18.1 does not restrict the number of Rock Ridge continuation entries, which allows local users to cause a denial of service (infinite loop, and system crash or hang) via a crafted iso9660 image.
AI Insight
LLM-synthesized narrative grounded in this CVE's description and references.
Affected products
2- Range: <=3.18.1
Patches
Vulnerability mechanics
References
26- bugzilla.redhat.com/show_bug.cginvdVendor Advisory
- git.kernel.orgnvd
- lists.fedoraproject.org/pipermail/package-announce/2015-January/147864.htmlnvd
- lists.fedoraproject.org/pipermail/package-announce/2015-January/147973.htmlnvd
- lists.opensuse.org/opensuse-security-announce/2015-01/msg00035.htmlnvd
- lists.opensuse.org/opensuse-security-announce/2015-04/msg00000.htmlnvd
- lists.opensuse.org/opensuse-security-announce/2015-04/msg00009.htmlnvd
- lists.opensuse.org/opensuse-security-announce/2015-04/msg00015.htmlnvd
- lists.opensuse.org/opensuse-security-announce/2015-04/msg00020.htmlnvd
- rhn.redhat.com/errata/RHSA-2015-1081.htmlnvd
- rhn.redhat.com/errata/RHSA-2015-1137.htmlnvd
- rhn.redhat.com/errata/RHSA-2015-1138.htmlnvd
- secunia.com/advisories/62801nvd
- www.mandriva.com/security/advisoriesnvd
- www.openwall.com/lists/oss-security/2014/12/25/4nvd
- www.oracle.com/technetwork/topics/security/linuxbulletinjan2016-2867209.htmlnvd
- www.ubuntu.com/usn/USN-2490-1nvd
- www.ubuntu.com/usn/USN-2491-1nvd
- www.ubuntu.com/usn/USN-2492-1nvd
- www.ubuntu.com/usn/USN-2493-1nvd
- www.ubuntu.com/usn/USN-2515-1nvd
- www.ubuntu.com/usn/USN-2516-1nvd
- www.ubuntu.com/usn/USN-2517-1nvd
- www.ubuntu.com/usn/USN-2518-1nvd
- github.com/torvalds/linux/commit/f54e18f1b831c92f6512d2eedb224cd63d607d3dnvd
- source.android.com/security/bulletin/2017-01-01.htmlnvd
News mentions
0No linked articles in our index yet.