Professional OVAL Repository
[Eng]
[Rus]
[Sign-In]
OVAL
Search
Categories
RedCheck
About
OVAL Definitions
OVAL Items
FSTEC Data Bank Information Security Threats
NKCKI
EOL (End Of Life)
Linux Security Advisories
Mozilla Foundation Security Advisory
IBM
VMware
Cisco
Check Point Software Technologies
Apache
Solaris
FreeBSD
Development
GitHub Enterprise
Google Chrome Security Advisories
Oracle Security Advisories
Adobe Security Advisories
OpenSSL Security Advisories
Microsoft
CVE
CWE
CPE
Latest Updates
OS ROSA
ALT Linux
Astra Linux
RED OS
DSA (Debian Security Advisory) Patсh Statistics
DSA (Debian Security Advisory) Patсh Feed
DSA (Debian Security Advisory) Vulnerability Feed
DLA (Debian Security Advisory) Patсh Statistics
DLA (Debian Security Advisory) Patсh Feed
DLA (Debian Security Advisory) Vulnerability Feed
ALT Linux (Security Bulletins) Patсh Statistics
ALT Linux (Security Bulletins) Patсh Feed
ALT Linux (Security Bulletins) Vulnerability Feed
RED OS (Security Bulletins) Patсh Statistics
RED OS (Security Bulletins) Patсh Feed
RED OS (Security Bulletins) Vulnerability Feed
USN (Ubuntu Security Notice) Patсh Statistics
USN (Ubuntu Security Notice) Patсh Feed
USN (Ubuntu Security Notice) Vulnerability Feed
RHSA (RedHat Security Advisory) Patсh Statistics
RHSA (RedHat Security Advisory) Patсh Feed
RHSA (RedHat Security Advisory) Vulnerability Feed
ELSA (Oracle Linux Security Advisory) Patсh Statistics
ELSA (Oracle Linux Security Advisory) Patсh Feed
ELSA (Oracle Linux Security Advisory) Vulnerability Feed
SUSE (SUSE Security Advisories) Patсh Statistics
SUSE (SUSE Security Advisories) Patсh Feed
SUSE (SUSE Security Advisories) Vulnerability Feed
openSUSE (openSUSE Security Advisories) Patсh Statistics
openSUSE (openSUSE Security Advisories) Patсh Feed
openSUSE (openSUSE Security Advisories) Vulnerability Feed
Amazon Linux AMI (Security Bulletins) Patсh Statistics
Amazon Linux AMI (Security Bulletins) Patсh Feed
Amazon Linux AMI (Security Bulletins) Vulnerability Feed
Mageia Linux (Security Bulletins) Patсh Statistics
Mageia Linux (Security Bulletins) Patсh Feed
Mageia Linux (Security Bulletins) Vulnerability Feed
OS ROSA SX COBALT 1.0
OS ROSA DX COBALT 1.0
ROSA 7.3 (Security Advisories) Patсh Statistics
ROSA 7.3 (Security Advisories) Patсh Feed
ROSA 7.3 (Security Advisories) Vulnerability Feed
ALT Linux SPT 6.0
ALT Linux SPT 7.0
ALT 8 SP
ALT 9
Astra Linux SE 1.5
Astra Linux SE 1.6
Astra Linux SE 1.7
Astra Linux SE 1.8
RED OS Murom 7.1
RED OS Murom 7.2
IBM DB2
VMware Vulnerabilities Advisory (VMSA)
VMware vCenter Patch Advisories
VMware ESXi Patch Advisories
VMware NSX Patches
VMware NSX Vulnerabilities
VMware Photon OS 1.0 Patches
VMware Photon OS 1.0 Vulnerabilities
VMware Photon OS 2.0 Patches
VMware Photon OS 2.0 Vulnerabilities
Cisco ASA
Cisco IOS/NX-OS Advisory
Cisco NX-OS Vulnerabilities
Check Point Gaia
Apache Tomcat Advisories
Apache Tomcat Server
Apache HTTP Server
Python
Node.js
RubyGems
Qt
Microsoft Security Bulletin
Microsoft Knowledge Base Article
Microsoft SharePoint
Microsoft SharePoint Foundation 2013
Microsoft SharePoint Server 2013
Microsoft SharePoint Server 2016
About OVALdb
User manual
Pricing
Contact us
OVAL Definitions
>
OVAL Definition Details
Id
oval:ru.altx-soft.nix:def:131308
[Eng]
Version
8
Class
patch
ALTXid
324436
Language
Russian
Severity
High
Title
Обновление SUSE-SU-2020:1255-1 -- устранение уязвимостей в the Linux Kernel
Description
The SUSE Linux Enterprise 12 SP2 kernel was updated to receive various security and bugfixes.
Family
unix
Platform
SUSE Linux Enterprise Server 12
Product
Linux Kernel
Reference
VENDOR: SUSE-SU-2020:1255-1
VENDOR: SUSE-SU-2020:1255-1
Id:
SUSE-SU-2020:1255-1
Reference:
https://www.suse.com/support/update/announcement/2020/suse-su-20201255-1.html
CVE: CVE-2020-11494
CVE: CVE-2020-11494
Id:
CVE-2020-11494
Reference:
http://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2020-11494
Comment
: An issue was discovered in slc_bump in drivers/net/can/slcan.c in the Linux kernel 3.16 through 5.6.2. It allows attackers to read uninitialized can_frame data, potentially containing sensitive information from kernel stack memory, if the configuration lacks CONFIG_INIT_STACK_ALL, aka CID-b9258a2cece4.
CVSSv2 Score:
2.1
Access vector:
LOCAL
Access complexity:
LOW
Authentication:
NONE
Confidentiality impact:
PARTIAL
Integrity impact:
NONE
Availability impact:
NONE
CVSSv2 Vector:
AV:L/AC:L/Au:N/C:P/I:N/A:N
CVSSv3 Score:
4.4
Attack vector:
LOCAL
Attack complexity:
LOW
Privileges required:
HIGH
User interaction:
NONE
Scope:
UNCHANGED
Confidentiality impact:
HIGH
Integrity impact:
NONE
Availability impact:
NONE
CVSSv3 Vector:
CVSS:3.1/AV:L/AC:L/PR:H/UI:N/S:U/C:H/I:N/A:N
CWE:
908 ()
References:
https://github.com/torvalds/linux/commit/b9258a2cece4ec1f020715fe3554bc2e360f6264 (MISC)
openSUSE-SU-2020:0543 (SUSE)
https://security.netapp.com/advisory/ntap-20200430-0004/ (CONFIRM)
USN-4364-1 (UBUNTU)
USN-4368-1 (UBUNTU)
USN-4363-1 (UBUNTU)
USN-4369-1 (UBUNTU)
[debian-lts-announce] 20200609 [SECURITY] [DLA 2241-1] linux security update (MLIST)
[debian-lts-announce] 20200610 [SECURITY] [DLA 2241-2] linux security update (MLIST)
[debian-lts-announce] 20200610 [SECURITY] [DLA 2242-1] linux-4.9 security update (MLIST)
DSA-4698 (DEBIAN)
http://packetstormsecurity.com/files/159565/Kernel-Live-Patch-Security-Notice-LSN-0072-1.html (MISC)
https://git.kernel.org/pub/scm/linux/kernel/git/tip/tip.git/commit/?id=08fadc32ce6239dc75fd5e869590e29bc62bbc28 (MISC)
CVE: CVE-2020-10942
CVE: CVE-2020-10942
Id:
CVE-2020-10942
Reference:
http://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2020-10942
Comment
: In the Linux kernel before 5.5.8, get_raw_socket in drivers/vhost/net.c lacks validation of an sk_family field, which might allow attackers to trigger kernel stack corruption via crafted system calls.
CVSSv2 Score:
5.4
Access vector:
LOCAL
Access complexity:
MEDIUM
Authentication:
NONE
Confidentiality impact:
NONE
Integrity impact:
PARTIAL
Availability impact:
COMPLETE
CVSSv2 Vector:
AV:L/AC:M/Au:N/C:N/I:P/A:C
CVSSv3 Score:
5.3
Attack vector:
LOCAL
Attack complexity:
HIGH
Privileges required:
LOW
User interaction:
NONE
Scope:
UNCHANGED
Confidentiality impact:
NONE
Integrity impact:
LOW
Availability impact:
HIGH
CVSSv3 Vector:
CVSS:3.1/AV:L/AC:H/PR:L/UI:N/S:U/C:N/I:L/A:H
CWE:
787 (Out-of-bounds Write)
References:
https://lkml.org/lkml/2020/2/15/125 (MISC)
https://cdn.kernel.org/pub/linux/kernel/v5.x/ChangeLog-5.5.8 (MISC)
https://git.kernel.org/linus/42d84c8490f9f0931786f1623191fcab397c3d64 (MISC)
https://security.netapp.com/advisory/ntap-20200403-0003/ (CONFIRM)
[oss-security] 20200415 CVE-2020-10942 Kernel: vhost-net: stack overflow in get_raw_socket while checking sk_family field (MLIST)
openSUSE-SU-2020:0543 (SUSE)
DSA-4667 (DEBIAN)
USN-4344-1 (UBUNTU)
USN-4345-1 (UBUNTU)
USN-4342-1 (UBUNTU)
USN-4364-1 (UBUNTU)
[debian-lts-announce] 20200609 [SECURITY] [DLA 2241-1] linux security update (MLIST)
[debian-lts-announce] 20200610 [SECURITY] [DLA 2241-2] linux security update (MLIST)
[debian-lts-announce] 20200610 [SECURITY] [DLA 2242-1] linux-4.9 security update (MLIST)
DSA-4698 (DEBIAN)
CVE: CVE-2020-8647
CVE: CVE-2020-8647
Id:
CVE-2020-8647
Reference:
http://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2020-8647
Comment
: There is a use-after-free vulnerability in the Linux kernel through 5.5.2 in the vc_do_resize function in drivers/tty/vt/vt.c.
CVSSv2 Score:
3.6
Access vector:
LOCAL
Access complexity:
LOW
Authentication:
NONE
Confidentiality impact:
PARTIAL
Integrity impact:
NONE
Availability impact:
PARTIAL
CVSSv2 Vector:
AV:L/AC:L/Au:N/C:P/I:N/A:P
CVSSv3 Score:
6.1
Attack vector:
LOCAL
Attack complexity:
LOW
Privileges required:
LOW
User interaction:
NONE
Scope:
UNCHANGED
Confidentiality impact:
LOW
Integrity impact:
NONE
Availability impact:
HIGH
CVSSv3 Vector:
CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:L/I:N/A:H
CWE:
416 (Use After Free)
References:
https://bugzilla.kernel.org/show_bug.cgi?id=206359 (MISC)
openSUSE-SU-2020:0388 (SUSE)
[debian-lts-announce] 20200609 [SECURITY] [DLA 2241-1] linux security update (MLIST)
[debian-lts-announce] 20200610 [SECURITY] [DLA 2241-2] linux security update (MLIST)
[debian-lts-announce] 20200610 [SECURITY] [DLA 2242-1] linux-4.9 security update (MLIST)
DSA-4698 (DEBIAN)
CVE: CVE-2020-8649
CVE: CVE-2020-8649
Id:
CVE-2020-8649
Reference:
http://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2020-8649
Comment
: There is a use-after-free vulnerability in the Linux kernel through 5.5.2 in the vgacon_invert_region function in drivers/video/console/vgacon.c.
CVSSv2 Score:
3.6
Access vector:
LOCAL
Access complexity:
LOW
Authentication:
NONE
Confidentiality impact:
PARTIAL
Integrity impact:
NONE
Availability impact:
PARTIAL
CVSSv2 Vector:
AV:L/AC:L/Au:N/C:P/I:N/A:P
CVSSv3 Score:
5.9
Attack vector:
PHYSICAL
Attack complexity:
LOW
Privileges required:
LOW
User interaction:
NONE
Scope:
UNCHANGED
Confidentiality impact:
HIGH
Integrity impact:
NONE
Availability impact:
HIGH
CVSSv3 Vector:
CVSS:3.1/AV:P/AC:L/PR:L/UI:N/S:U/C:H/I:N/A:H
CWE:
416 (Use After Free)
References:
https://bugzilla.kernel.org/show_bug.cgi?id=206357 (MISC)
openSUSE-SU-2020:0388 (SUSE)
[debian-lts-announce] 20200609 [SECURITY] [DLA 2241-1] linux security update (MLIST)
[debian-lts-announce] 20200610 [SECURITY] [DLA 2241-2] linux security update (MLIST)
[debian-lts-announce] 20200610 [SECURITY] [DLA 2242-1] linux-4.9 security update (MLIST)
DSA-4698 (DEBIAN)
CVE: CVE-2020-9383
CVE: CVE-2020-9383
Id:
CVE-2020-9383
Reference:
http://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2020-9383
Comment
: An issue was discovered in the Linux kernel 3.16 through 5.5.6. set_fdc in drivers/block/floppy.c leads to a wait_til_ready out-of-bounds read because the FDC index is not checked for errors before assigning it, aka CID-2e90ca68b0d2.
CVSSv2 Score:
3.6
Access vector:
LOCAL
Access complexity:
LOW
Authentication:
NONE
Confidentiality impact:
PARTIAL
Integrity impact:
NONE
Availability impact:
PARTIAL
CVSSv2 Vector:
AV:L/AC:L/Au:N/C:P/I:N/A:P
CVSSv3 Score:
7.1
Attack vector:
LOCAL
Attack complexity:
LOW
Privileges required:
LOW
User interaction:
NONE
Scope:
UNCHANGED
Confidentiality impact:
HIGH
Integrity impact:
NONE
Availability impact:
HIGH
CVSSv3 Vector:
CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:N/A:H
CWE:
125 (Out-of-bounds Read)
References:
https://github.com/torvalds/linux/commit/2e90ca68b0d2f5548804f22f0dd61145516171e3 (MISC)
https://security.netapp.com/advisory/ntap-20200313-0003/ (CONFIRM)
openSUSE-SU-2020:0388 (SUSE)
USN-4344-1 (UBUNTU)
USN-4345-1 (UBUNTU)
USN-4342-1 (UBUNTU)
USN-4346-1 (UBUNTU)
[debian-lts-announce] 20200609 [SECURITY] [DLA 2241-1] linux security update (MLIST)
[debian-lts-announce] 20200610 [SECURITY] [DLA 2241-2] linux security update (MLIST)
[debian-lts-announce] 20200610 [SECURITY] [DLA 2242-1] linux-4.9 security update (MLIST)
DSA-4698 (DEBIAN)
https://git.kernel.org/pub/scm/linux/kernel/git/tip/tip.git/commit/?id=2f9ac30a54dc0181ddac3705cdcf4775d863c530 (MISC)
CVE: CVE-2019-9458
CVE: CVE-2019-9458
Id:
CVE-2019-9458
Reference:
http://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2019-9458
Comment
: In the Android kernel in the video driver there is a use after free due to a race condition. This could lead to local escalation of privilege with no additional execution privileges needed. User interaction is not needed for exploitation.
CVSSv2 Score:
4.4
Access vector:
LOCAL
Access complexity:
MEDIUM
Authentication:
NONE
Confidentiality impact:
PARTIAL
Integrity impact:
PARTIAL
Availability impact:
PARTIAL
CVSSv2 Vector:
AV:L/AC:M/Au:N/C:P/I:P/A:P
CVSSv3 Score:
7
Attack vector:
LOCAL
Attack complexity:
HIGH
Privileges required:
LOW
User interaction:
NONE
Scope:
UNCHANGED
Confidentiality impact:
HIGH
Integrity impact:
HIGH
Availability impact:
HIGH
CVSSv3 Vector:
CVSS:3.1/AV:L/AC:H/PR:L/UI:N/S:U/C:H/I:H/A:H
CWE:
362 (Concurrent Execution using Shared Resource with Improper Synchronization ('Race Condition'))
References:
https://source.android.com/security/bulletin/pixel/2019-09-01 (MISC)
openSUSE-SU-2020:0543 (SUSE)
CVE: CVE-2019-3701
CVE: CVE-2019-3701
Id:
CVE-2019-3701
Reference:
http://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2019-3701
Comment
: An issue was discovered in can_can_gw_rcv in net/can/gw.c in the Linux kernel through 4.19.13. The CAN frame modification rules allow bitwise logical operations that can be also applied to the can_dlc field. The privileged user "root" with CAP_NET_ADMIN can create a CAN frame modification rule that makes the data length code a higher value than the available CAN frame data size. In combination with a configured checksum calculation where the result is stored relatively to the end of the data (e.g. cgw_csum_xor_rel) the tail of the skb (e.g. frag_list pointer in skb_shared_info) can be rewritten which finally can cause a system crash. Because of a missing check, the CAN drivers may write arbitrary content beyond the data registers in the CAN controller's I/O memory when processing can-gw manipulated outgoing frames.
CVSSv2 Score:
4.9
Access vector:
LOCAL
Access complexity:
LOW
Authentication:
NONE
Confidentiality impact:
NONE
Integrity impact:
NONE
Availability impact:
COMPLETE
CVSSv2 Vector:
AV:L/AC:L/Au:N/C:N/I:N/A:C
CVSSv3 Score:
4.4
Attack vector:
LOCAL
Attack complexity:
LOW
Privileges required:
HIGH
User interaction:
NONE
Scope:
UNCHANGED
Confidentiality impact:
NONE
Integrity impact:
NONE
Availability impact:
HIGH
CVSSv3 Vector:
CVSS:3.0/AV:L/AC:L/PR:H/UI:N/S:U/C:N/I:N/A:H
CWE:
787 (Out-of-bounds Write)
References:
https://marc.info/?l=linux-netdev&m=154651842302479&w=2 (MISC)
https://bugzilla.suse.com/show_bug.cgi?id=1120386 (MISC)
106443 (BID)
[debian-lts-announce] 20190327 [SECURITY] [DLA 1731-1] linux security update (MLIST)
[debian-lts-announce] 20190401 [SECURITY] [DLA 1731-2] linux regression update (MLIST)
USN-3932-2 (UBUNTU)
USN-3932-1 (UBUNTU)
https://support.f5.com/csp/article/K17957133 (CONFIRM)
https://marc.info/?l=linux-netdev&m=154661373531512&w=2 (MISC)
https://git.kernel.org/pub/scm/linux/kernel/git/davem/net.git/commit/?id=0aaa81377c5a01f686bcdb8c7a6929a7bf330c68 (MISC)
[debian-lts-announce] 20190503 [SECURITY] [DLA 1771-1] linux-4.9 security update (MLIST)
USN-4115-1 (UBUNTU)
USN-4118-1 (UBUNTU)
openSUSE-SU-2020:0543 (SUSE)
CVE: CVE-2019-19768
CVE: CVE-2019-19768
Id:
CVE-2019-19768
Reference:
http://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2019-19768
Comment
: In the Linux kernel 5.4.0-rc2, there is a use-after-free (read) in the __blk_add_trace function in kernel/trace/blktrace.c (which is used to fill out a blk_io_trace structure and place it in a per-cpu sub-buffer).
CVSSv2 Score:
5
Access vector:
NETWORK
Access complexity:
LOW
Authentication:
NONE
Confidentiality impact:
NONE
Integrity impact:
NONE
Availability impact:
PARTIAL
CVSSv2 Vector:
AV:N/AC:L/Au:N/C:N/I:N/A:P
CVSSv3 Score:
7.5
Attack vector:
NETWORK
Attack complexity:
LOW
Privileges required:
NONE
User interaction:
NONE
Scope:
UNCHANGED
Confidentiality impact:
NONE
Integrity impact:
NONE
Availability impact:
HIGH
CVSSv3 Vector:
CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:H
CWE:
416 (Use After Free)
References:
https://bugzilla.kernel.org/show_bug.cgi?id=205711 (MISC)
https://security.netapp.com/advisory/ntap-20200103-0001/ (CONFIRM)
openSUSE-SU-2020:0388 (SUSE)
USN-4344-1 (UBUNTU)
USN-4345-1 (UBUNTU)
USN-4342-1 (UBUNTU)
USN-4346-1 (UBUNTU)
[debian-lts-announce] 20200609 [SECURITY] [DLA 2241-1] linux security update (MLIST)
[debian-lts-announce] 20200610 [SECURITY] [DLA 2241-2] linux security update (MLIST)
[debian-lts-announce] 20200610 [SECURITY] [DLA 2242-1] linux-4.9 security update (MLIST)
DSA-4698 (DEBIAN)
CVE: CVE-2020-11609
CVE: CVE-2020-11609
Id:
CVE-2020-11609
Reference:
http://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2020-11609
Comment
: An issue was discovered in the stv06xx subsystem in the Linux kernel before 5.6.1. drivers/media/usb/gspca/stv06xx/stv06xx.c and drivers/media/usb/gspca/stv06xx/stv06xx_pb0100.c mishandle invalid descriptors, as demonstrated by a NULL pointer dereference, aka CID-485b06aadb93.
CVSSv2 Score:
4.9
Access vector:
LOCAL
Access complexity:
LOW
Authentication:
NONE
Confidentiality impact:
NONE
Integrity impact:
NONE
Availability impact:
COMPLETE
CVSSv2 Vector:
AV:L/AC:L/Au:N/C:N/I:N/A:C
CVSSv3 Score:
4.3
Attack vector:
PHYSICAL
Attack complexity:
LOW
Privileges required:
LOW
User interaction:
NONE
Scope:
UNCHANGED
Confidentiality impact:
NONE
Integrity impact:
NONE
Availability impact:
HIGH
CVSSv3 Vector:
CVSS:3.1/AV:P/AC:L/PR:L/UI:N/S:U/C:N/I:N/A:H
CWE:
476 (NULL Pointer Dereference)
References:
https://git.kernel.org/cgit/linux/kernel/git/torvalds/linux.git/commit/?id=485b06aadb933190f4bc44e006076bc27a23f205 (MISC)
https://cdn.kernel.org/pub/linux/kernel/v5.x/ChangeLog-5.6.1 (MISC)
https://github.com/torvalds/linux/commit/485b06aadb933190f4bc44e006076bc27a23f205 (MISC)
https://security.netapp.com/advisory/ntap-20200430-0004/ (CONFIRM)
USN-4345-1 (UBUNTU)
USN-4364-1 (UBUNTU)
USN-4368-1 (UBUNTU)
USN-4369-1 (UBUNTU)
[debian-lts-announce] 20200609 [SECURITY] [DLA 2241-1] linux security update (MLIST)
[debian-lts-announce] 20200610 [SECURITY] [DLA 2241-2] linux security update (MLIST)
[debian-lts-announce] 20200610 [SECURITY] [DLA 2242-1] linux-4.9 security update (MLIST)
DSA-4698 (DEBIAN)
openSUSE-SU-2020:0801 (SUSE)
CVE: CVE-2020-10720
CVE: CVE-2020-10720
Id:
CVE-2020-10720
Reference:
http://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2020-10720
Comment
: A flaw was found in the Linux kernel's implementation of GRO in versions before 5.2. This flaw allows an attacker with local access to crash the system.
CVSSv2 Score:
4.9
Access vector:
LOCAL
Access complexity:
LOW
Authentication:
NONE
Confidentiality impact:
NONE
Integrity impact:
NONE
Availability impact:
COMPLETE
CVSSv2 Vector:
AV:L/AC:L/Au:N/C:N/I:N/A:C
CVSSv3 Score:
5.5
Attack vector:
LOCAL
Attack complexity:
LOW
Privileges required:
LOW
User interaction:
NONE
Scope:
UNCHANGED
Confidentiality impact:
NONE
Integrity impact:
NONE
Availability impact:
HIGH
CVSSv3 Vector:
CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:N/I:N/A:H
CWE:
416 (Use After Free)
References:
https://git.kernel.org/pub/scm/linux/kernel/git/torvalds/linux.git/commit/?id=a4270d6795b0580287453ea55974d948393e66ef (MISC)
https://bugzilla.redhat.com/show_bug.cgi?id=1781204 (MISC)
CVE: CVE-2020-10690
CVE: CVE-2020-10690
Id:
CVE-2020-10690
Reference:
http://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2020-10690
Comment
: There is a use-after-free in kernel versions before 5.5 due to a race condition between the release of ptp_clock and cdev while resource deallocation. When a (high privileged) process allocates a ptp device file (like /dev/ptpX) and voluntarily goes to sleep. During this time if the underlying device is removed, it can cause an exploitable condition as the process wakes up to terminate and clean all attached files. The system crashes due to the cdev structure being invalid (as already freed) which is pointed to by the inode.
CVSSv2 Score:
4.4
Access vector:
LOCAL
Access complexity:
MEDIUM
Authentication:
NONE
Confidentiality impact:
PARTIAL
Integrity impact:
PARTIAL
Availability impact:
PARTIAL
CVSSv2 Vector:
AV:L/AC:M/Au:N/C:P/I:P/A:P
CVSSv3 Score:
6.4
Attack vector:
LOCAL
Attack complexity:
HIGH
Privileges required:
HIGH
User interaction:
NONE
Scope:
UNCHANGED
Confidentiality impact:
HIGH
Integrity impact:
HIGH
Availability impact:
HIGH
CVSSv3 Vector:
CVSS:3.1/AV:L/AC:H/PR:H/UI:N/S:U/C:H/I:H/A:H
CWE:
416 (Use After Free)
References:
https://bugzilla.redhat.com/show_bug.cgi?id=CVE-2020-10690 (CONFIRM)
https://security.netapp.com/advisory/ntap-20200608-0001/ (CONFIRM)
[debian-lts-announce] 20200609 [SECURITY] [DLA 2241-1] linux security update (MLIST)
[debian-lts-announce] 20200610 [SECURITY] [DLA 2241-2] linux security update (MLIST)
openSUSE-SU-2020:0801 (SUSE)
USN-4419-1 (UBUNTU)
CVE: CVE-2019-9455
CVE: CVE-2019-9455
Id:
CVE-2019-9455
Reference:
http://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2019-9455
Comment
: In the Android kernel in the video driver there is a kernel pointer leak due to a WARN_ON statement. This could lead to local information disclosure with System execution privileges needed. User interaction is not needed for exploitation.
CVSSv2 Score:
2.1
Access vector:
LOCAL
Access complexity:
LOW
Authentication:
NONE
Confidentiality impact:
PARTIAL
Integrity impact:
NONE
Availability impact:
NONE
CVSSv2 Vector:
AV:L/AC:L/Au:N/C:P/I:N/A:N
CVSSv3 Score:
2.3
Attack vector:
LOCAL
Attack complexity:
LOW
Privileges required:
HIGH
User interaction:
NONE
Scope:
UNCHANGED
Confidentiality impact:
LOW
Integrity impact:
NONE
Availability impact:
NONE
CVSSv3 Vector:
CVSS:3.1/AV:L/AC:L/PR:H/UI:N/S:U/C:L/I:N/A:N
CWE:
209 (Information Exposure Through an Error Message)
References:
https://source.android.com/security/bulletin/pixel/2019-09-01 (MISC)
openSUSE-SU-2020:0801 (SUSE)
CVE: CVE-2020-11608
CVE: CVE-2020-11608
Id:
CVE-2020-11608
Reference:
http://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2020-11608
Comment
: An issue was discovered in the Linux kernel before 5.6.1. drivers/media/usb/gspca/ov519.c allows NULL pointer dereferences in ov511_mode_init_regs and ov518_mode_init_regs when there are zero endpoints, aka CID-998912346c0d.
CVSSv2 Score:
4.9
Access vector:
LOCAL
Access complexity:
LOW
Authentication:
NONE
Confidentiality impact:
NONE
Integrity impact:
NONE
Availability impact:
COMPLETE
CVSSv2 Vector:
AV:L/AC:L/Au:N/C:N/I:N/A:C
CVSSv3 Score:
4.3
Attack vector:
PHYSICAL
Attack complexity:
LOW
Privileges required:
LOW
User interaction:
NONE
Scope:
UNCHANGED
Confidentiality impact:
NONE
Integrity impact:
NONE
Availability impact:
HIGH
CVSSv3 Vector:
CVSS:3.1/AV:P/AC:L/PR:L/UI:N/S:U/C:N/I:N/A:H
CWE:
476 (NULL Pointer Dereference)
References:
https://cdn.kernel.org/pub/linux/kernel/v5.x/ChangeLog-5.6.1 (MISC)
https://git.kernel.org/cgit/linux/kernel/git/torvalds/linux.git/commit/?id=998912346c0da53a6dbb71fab3a138586b596b30 (MISC)
https://github.com/torvalds/linux/commit/998912346c0da53a6dbb71fab3a138586b596b30 (MISC)
https://security.netapp.com/advisory/ntap-20200430-0004/ (CONFIRM)
USN-4345-1 (UBUNTU)
USN-4364-1 (UBUNTU)
USN-4368-1 (UBUNTU)
USN-4369-1 (UBUNTU)
[debian-lts-announce] 20200609 [SECURITY] [DLA 2241-1] linux security update (MLIST)
[debian-lts-announce] 20200610 [SECURITY] [DLA 2241-2] linux security update (MLIST)
[debian-lts-announce] 20200610 [SECURITY] [DLA 2242-1] linux-4.9 security update (MLIST)
DSA-4698 (DEBIAN)
openSUSE-SU-2020:0801 (SUSE)
CVE: CVE-2017-18255
CVE: CVE-2017-18255
Id:
CVE-2017-18255
Reference:
http://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2017-18255
Comment
: The perf_cpu_time_max_percent_handler function in kernel/events/core.c in the Linux kernel before 4.11 allows local users to cause a denial of service (integer overflow) or possibly have unspecified other impact via a large value, as demonstrated by an incorrect sample-rate calculation.
CVSSv2 Score:
4.6
Access vector:
LOCAL
Access complexity:
LOW
Authentication:
NONE
Confidentiality impact:
PARTIAL
Integrity impact:
PARTIAL
Availability impact:
PARTIAL
CVSSv2 Vector:
AV:L/AC:L/Au:N/C:P/I:P/A:P
CVSSv3 Score:
7.8
Attack vector:
LOCAL
Attack complexity:
LOW
Privileges required:
LOW
User interaction:
NONE
Scope:
UNCHANGED
Confidentiality impact:
HIGH
Integrity impact:
HIGH
Availability impact:
HIGH
CVSSv3 Vector:
CVSS:3.0/AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H
CWE:
190 (Integer Overflow or Wraparound)
References:
https://github.com/torvalds/linux/commit/1572e45a924f254d9570093abde46430c3172e3d (MISC)
http://git.kernel.org/cgit/linux/kernel/git/torvalds/linux.git/commit/?id=1572e45a924f254d9570093abde46430c3172e3d (MISC)
USN-3696-2 (UBUNTU)
USN-3696-1 (UBUNTU)
[debian-lts-announce] 20180718 [SECURITY] [DLA 1423-1] linux-4.9 new package (MLIST)
USN-3754-1 (UBUNTU)
103607 (BID)
CVE: CVE-2020-8648
CVE: CVE-2020-8648
Id:
CVE-2020-8648
Reference:
http://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2020-8648
Comment
: There is a use-after-free vulnerability in the Linux kernel through 5.5.2 in the n_tty_receive_buf_common function in drivers/tty/n_tty.c.
CVSSv2 Score:
3.6
Access vector:
LOCAL
Access complexity:
LOW
Authentication:
NONE
Confidentiality impact:
PARTIAL
Integrity impact:
NONE
Availability impact:
PARTIAL
CVSSv2 Vector:
AV:L/AC:L/Au:N/C:P/I:N/A:P
CVSSv3 Score:
7.1
Attack vector:
LOCAL
Attack complexity:
LOW
Privileges required:
LOW
User interaction:
NONE
Scope:
UNCHANGED
Confidentiality impact:
HIGH
Integrity impact:
NONE
Availability impact:
HIGH
CVSSv3 Vector:
CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:N/A:H
CWE:
416 (Use After Free)
References:
https://bugzilla.kernel.org/show_bug.cgi?id=206361 (MISC)
openSUSE-SU-2020:0336 (SUSE)
USN-4344-1 (UBUNTU)
USN-4345-1 (UBUNTU)
USN-4342-1 (UBUNTU)
USN-4346-1 (UBUNTU)
[debian-lts-announce] 20200609 [SECURITY] [DLA 2241-1] linux security update (MLIST)
[debian-lts-announce] 20200610 [SECURITY] [DLA 2241-2] linux security update (MLIST)
[debian-lts-announce] 20200610 [SECURITY] [DLA 2242-1] linux-4.9 security update (MLIST)
DSA-4698 (DEBIAN)
https://security.netapp.com/advisory/ntap-20200924-0004/ (CONFIRM)
CVE: CVE-2020-2732
CVE: CVE-2020-2732
Id:
CVE-2020-2732
Reference:
http://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2020-2732
Comment
: A flaw was discovered in the way that the KVM hypervisor handled instruction emulation for an L2 guest when nested virtualisation is enabled. Under some circumstances, an L2 guest may trick the L0 guest into accessing sensitive L1 resources that should be inaccessible to the L2 guest.
CVSSv2 Score:
2.3
Access vector:
ADJACENT_NETWORK
Access complexity:
MEDIUM
Authentication:
SINGLE
Confidentiality impact:
PARTIAL
Integrity impact:
NONE
Availability impact:
NONE
CVSSv2 Vector:
AV:A/AC:M/Au:S/C:P/I:N/A:N
CVSSv3 Score:
6.8
Attack vector:
ADJACENT_NETWORK
Attack complexity:
LOW
Privileges required:
LOW
User interaction:
NONE
Scope:
CHANGED
Confidentiality impact:
HIGH
Integrity impact:
NONE
Availability impact:
NONE
CVSSv3 Vector:
CVSS:3.1/AV:A/AC:L/PR:L/UI:N/S:C/C:H/I:N/A:N
CWE:
200 (Information Exposure)
References:
https://www.spinics.net/lists/kvm/msg208259.html (MISC)
https://linux.oracle.com/errata/ELSA-2020-5540.html (MISC)
https://linux.oracle.com/errata/ELSA-2020-5542.html (MISC)
https://www.openwall.com/lists/oss-security/2020/02/25/3 (MISC)
https://git.kernel.org/linus/35a571346a94fb93b5b3b6a599675ef3384bc75c (MISC)
https://bugzilla.redhat.com/show_bug.cgi?id=1805135 (MISC)
https://linux.oracle.com/errata/ELSA-2020-5543.html (MISC)
https://git.kernel.org/linus/07721feee46b4b248402133228235318199b05ec (MISC)
https://git.kernel.org/linus/e71237d3ff1abf9f3388337cfebf53b96df2020d (MISC)
DSA-4667 (DEBIAN)
[debian-lts-announce] 20200609 [SECURITY] [DLA 2241-1] linux security update (MLIST)
[debian-lts-announce] 20200610 [SECURITY] [DLA 2241-2] linux security update (MLIST)
[debian-lts-announce] 20200610 [SECURITY] [DLA 2242-1] linux-4.9 security update (MLIST)
DSA-4698 (DEBIAN)
CVE: CVE-2019-5108
CVE: CVE-2019-5108
Id:
CVE-2019-5108
Reference:
http://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2019-5108
Comment
: An exploitable denial-of-service vulnerability exists in the Linux kernel prior to mainline 5.3. An attacker could exploit this vulnerability by triggering AP to send IAPP location updates for stations before the required authentication process has completed. This could lead to different denial-of-service scenarios, either by causing CAM table attacks, or by leading to traffic flapping if faking already existing clients in other nearby APs of the same wireless infrastructure. An attacker can forge Authentication and Association Request packets to trigger this vulnerability.
CVSSv2 Score:
3.3
Access vector:
ADJACENT_NETWORK
Access complexity:
LOW
Authentication:
NONE
Confidentiality impact:
NONE
Integrity impact:
NONE
Availability impact:
PARTIAL
CVSSv2 Vector:
AV:A/AC:L/Au:N/C:N/I:N/A:P
CVSSv3 Score:
6.5
Attack vector:
ADJACENT_NETWORK
Attack complexity:
LOW
Privileges required:
NONE
User interaction:
NONE
Scope:
UNCHANGED
Confidentiality impact:
NONE
Integrity impact:
NONE
Availability impact:
HIGH
CVSSv3 Vector:
CVSS:3.1/AV:A/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:H
CWE:
287 (Improper Authentication)
References:
https://talosintelligence.com/vulnerability_reports/TALOS-2019-0900 (MISC)
https://git.kernel.org/linus/3e493173b7841259a08c5c8e5cbe90adb349da7e (MISC)
https://security.netapp.com/advisory/ntap-20200204-0002/ (CONFIRM)
http://packetstormsecurity.com/files/156455/Kernel-Live-Patch-Security-Notice-LSN-0063-1.html (MISC)
USN-4285-1 (UBUNTU)
USN-4287-1 (UBUNTU)
USN-4286-2 (UBUNTU)
USN-4287-2 (UBUNTU)
USN-4286-1 (UBUNTU)
[debian-lts-announce] 20200609 [SECURITY] [DLA 2241-1] linux security update (MLIST)
[debian-lts-announce] 20200610 [SECURITY] [DLA 2241-2] linux security update (MLIST)
[debian-lts-announce] 20200610 [SECURITY] [DLA 2242-1] linux-4.9 security update (MLIST)
DSA-4698 (DEBIAN)
https://www.oracle.com/security-alerts/cpuApr2021.html (MISC)
CVE: CVE-2020-8992
CVE: CVE-2020-8992
Id:
CVE-2020-8992
Reference:
http://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2020-8992
Comment
: ext4_protect_reserved_inode in fs/ext4/block_validity.c in the Linux kernel through 5.5.3 allows attackers to cause a denial of service (soft lockup) via a crafted journal size.
CVSSv2 Score:
4.9
Access vector:
LOCAL
Access complexity:
LOW
Authentication:
NONE
Confidentiality impact:
NONE
Integrity impact:
NONE
Availability impact:
COMPLETE
CVSSv2 Vector:
AV:L/AC:L/Au:N/C:N/I:N/A:C
CVSSv3 Score:
5.5
Attack vector:
LOCAL
Attack complexity:
LOW
Privileges required:
LOW
User interaction:
NONE
Scope:
UNCHANGED
Confidentiality impact:
NONE
Integrity impact:
NONE
Availability impact:
HIGH
CVSSv3 Vector:
CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:N/I:N/A:H
CWE:
400 (Uncontrolled Resource Consumption ('Resource Exhaustion'))
References:
https://patchwork.ozlabs.org/patch/1236118/ (MISC)
https://security.netapp.com/advisory/ntap-20200313-0003/ (CONFIRM)
openSUSE-SU-2020:0336 (SUSE)
USN-4318-1 (UBUNTU)
USN-4324-1 (UBUNTU)
USN-4344-1 (UBUNTU)
USN-4342-1 (UBUNTU)
USN-4419-1 (UBUNTU)
CVE: CVE-2018-21008
CVE: CVE-2018-21008
Id:
CVE-2018-21008
Reference:
http://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2018-21008
Comment
: An issue was discovered in the Linux kernel before 4.16.7. A use-after-free can be caused by the function rsi_mac80211_detach in the file drivers/net/wireless/rsi/rsi_91x_mac80211.c.
CVSSv2 Score:
4.9
Access vector:
LOCAL
Access complexity:
LOW
Authentication:
NONE
Confidentiality impact:
NONE
Integrity impact:
NONE
Availability impact:
COMPLETE
CVSSv2 Vector:
AV:L/AC:L/Au:N/C:N/I:N/A:C
CVSSv3 Score:
5.5
Attack vector:
LOCAL
Attack complexity:
LOW
Privileges required:
LOW
User interaction:
NONE
Scope:
UNCHANGED
Confidentiality impact:
NONE
Integrity impact:
NONE
Availability impact:
HIGH
CVSSv3 Vector:
CVSS:3.0/AV:L/AC:L/PR:L/UI:N/S:U/C:N/I:N/A:H
CWE:
416 (Use After Free)
References:
https://git.kernel.org/pub/scm/linux/kernel/git/torvalds/linux.git/commit/?id=abd39c6ded9db53aa44c2540092bdd5fb6590fa8 (MISC)
https://cdn.kernel.org/pub/linux/kernel/v4.x/ChangeLog-4.16.7 (MISC)
openSUSE-SU-2019:2173 (SUSE)
openSUSE-SU-2019:2181 (SUSE)
[debian-lts-announce] 20190925 [SECURITY] [DLA 1930-1] linux security update (MLIST)
https://security.netapp.com/advisory/ntap-20191004-0001/ (CONFIRM)
USN-4162-1 (UBUNTU)
USN-4163-1 (UBUNTU)
USN-4163-2 (UBUNTU)
USN-4162-2 (UBUNTU)
http://packetstormsecurity.com/files/154951/Kernel-Live-Patch-Security-Notice-LSN-0058-1.html (MISC)
[debian-lts-announce] 20200302 [SECURITY] [DLA 2114-1] linux-4.9 security update (MLIST)
CVE: CVE-2019-14896
CVE: CVE-2019-14896
Id:
CVE-2019-14896
Reference:
http://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2019-14896
Comment
: A heap-based buffer overflow vulnerability was found in the Linux kernel, version kernel-2.6.32, in Marvell WiFi chip driver. A remote attacker could cause a denial of service (system crash) or, possibly execute arbitrary code, when the lbs_ibss_join_existing function is called after a STA connects to an AP.
CVSSv2 Score:
10
Access vector:
NETWORK
Access complexity:
LOW
Authentication:
NONE
Confidentiality impact:
COMPLETE
Integrity impact:
COMPLETE
Availability impact:
COMPLETE
CVSSv2 Vector:
AV:N/AC:L/Au:N/C:C/I:C/A:C
CVSSv3 Score:
9.8
Attack vector:
NETWORK
Attack complexity:
LOW
Privileges required:
NONE
User interaction:
NONE
Scope:
UNCHANGED
Confidentiality impact:
HIGH
Integrity impact:
HIGH
Availability impact:
HIGH
CVSSv3 Vector:
CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H
CWE:
122 (Heap-based Buffer Overflow)
References:
https://bugzilla.redhat.com/show_bug.cgi?id=CVE-2019-14896 (CONFIRM)
https://security.netapp.com/advisory/ntap-20200103-0001/ (CONFIRM)
USN-4228-1 (UBUNTU)
USN-4227-1 (UBUNTU)
USN-4225-1 (UBUNTU)
USN-4228-2 (UBUNTU)
USN-4226-1 (UBUNTU)
USN-4227-2 (UBUNTU)
http://packetstormsecurity.com/files/155879/Kernel-Live-Patch-Security-Notice-LSN-0061-1.html (MISC)
[debian-lts-announce] 20200118 [SECURITY] [DLA 2068-1] linux security update (MLIST)
USN-4225-2 (UBUNTU)
http://packetstormsecurity.com/files/156185/Kernel-Live-Patch-Security-Notice-LSN-0062-1.html (MISC)
[debian-lts-announce] 20200302 [SECURITY] [DLA 2114-1] linux-4.9 security update (MLIST)
openSUSE-SU-2020:0336 (SUSE)
https://lists.fedoraproject.org/archives/list/package-announce%40lists.fedoraproject.org/message/MN6MLCN7G7VFTSXSZYXKXEFCUMFBUAXQ/ (MISC)
https://lists.fedoraproject.org/archives/list/package-announce%40lists.fedoraproject.org/message/D4ISVNIC44SOGXTUBCIZFSUNQJ5LRKNZ/ (MISC)
CVE: CVE-2019-14897
CVE: CVE-2019-14897
Id:
CVE-2019-14897
Reference:
http://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2019-14897
Comment
: A stack-based buffer overflow was found in the Linux kernel, version kernel-2.6.32, in Marvell WiFi chip driver. An attacker is able to cause a denial of service (system crash) or, possibly execute arbitrary code, when a STA works in IBSS mode (allows connecting stations together without the use of an AP) and connects to another STA.
CVSSv2 Score:
7.5
Access vector:
NETWORK
Access complexity:
LOW
Authentication:
NONE
Confidentiality impact:
PARTIAL
Integrity impact:
PARTIAL
Availability impact:
PARTIAL
CVSSv2 Vector:
AV:N/AC:L/Au:N/C:P/I:P/A:P
CVSSv3 Score:
9.8
Attack vector:
NETWORK
Attack complexity:
LOW
Privileges required:
NONE
User interaction:
NONE
Scope:
UNCHANGED
Confidentiality impact:
HIGH
Integrity impact:
HIGH
Availability impact:
HIGH
CVSSv3 Vector:
CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H
CWE:
121 (Stack-based Buffer Overflow)
References:
https://bugzilla.redhat.com/show_bug.cgi?id=CVE-2019-14897 (CONFIRM)
USN-4228-1 (UBUNTU)
USN-4225-1 (UBUNTU)
USN-4228-2 (UBUNTU)
USN-4226-1 (UBUNTU)
USN-4227-1 (UBUNTU)
USN-4227-2 (UBUNTU)
http://packetstormsecurity.com/files/155879/Kernel-Live-Patch-Security-Notice-LSN-0061-1.html (MISC)
[debian-lts-announce] 20200118 [SECURITY] [DLA 2068-1] linux security update (MLIST)
USN-4225-2 (UBUNTU)
http://packetstormsecurity.com/files/156185/Kernel-Live-Patch-Security-Notice-LSN-0062-1.html (MISC)
[debian-lts-announce] 20200302 [SECURITY] [DLA 2114-1] linux-4.9 security update (MLIST)
openSUSE-SU-2020:0336 (SUSE)
https://lists.fedoraproject.org/archives/list/package-announce%40lists.fedoraproject.org/message/MN6MLCN7G7VFTSXSZYXKXEFCUMFBUAXQ/ (MISC)
https://lists.fedoraproject.org/archives/list/package-announce%40lists.fedoraproject.org/message/D4ISVNIC44SOGXTUBCIZFSUNQJ5LRKNZ/ (MISC)
CVE: CVE-2019-18675
CVE: CVE-2019-18675
Id:
CVE-2019-18675
Reference:
http://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2019-18675
Comment
: The Linux kernel through 5.3.13 has a start_offset+size Integer Overflow in cpia2_remap_buffer in drivers/media/usb/cpia2/cpia2_core.c because cpia2 has its own mmap implementation. This allows local users (with /dev/video0 access) to obtain read and write permissions on kernel physical pages, which can possibly result in a privilege escalation.
CVSSv2 Score:
7.2
Access vector:
LOCAL
Access complexity:
LOW
Authentication:
NONE
Confidentiality impact:
COMPLETE
Integrity impact:
COMPLETE
Availability impact:
COMPLETE
CVSSv2 Vector:
AV:L/AC:L/Au:N/C:C/I:C/A:C
CVSSv3 Score:
7.8
Attack vector:
LOCAL
Attack complexity:
LOW
Privileges required:
LOW
User interaction:
NONE
Scope:
UNCHANGED
Confidentiality impact:
HIGH
Integrity impact:
HIGH
Availability impact:
HIGH
CVSSv3 Vector:
CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H
CWE:
190 (Integer Overflow or Wraparound)
References:
https://deshal3v.github.io/blog/kernel-research/mmap_exploitation (MISC)
https://git.kernel.org/pub/scm/linux/kernel/git/torvalds/linux.git/log/drivers/media/usb/cpia2/cpia2_core.c (MISC)
https://security.netapp.com/advisory/ntap-20200103-0001/ (CONFIRM)
https://git.kernel.org/pub/scm/linux/kernel/git/torvalds/linux.git/commit/?id=be83bbf806822b1b89e0a0f23cd87cddc409e429 (CONFIRM)
CVE: CVE-2019-14615
CVE: CVE-2019-14615
Id:
CVE-2019-14615
Reference:
http://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2019-14615
Comment
: Insufficient control flow in certain data structures for some Intel(R) Processors with Intel(R) Processor Graphics may allow an unauthenticated user to potentially enable information disclosure via local access.
CVSSv2 Score:
1.9
Access vector:
LOCAL
Access complexity:
MEDIUM
Authentication:
NONE
Confidentiality impact:
PARTIAL
Integrity impact:
NONE
Availability impact:
NONE
CVSSv2 Vector:
AV:L/AC:M/Au:N/C:P/I:N/A:N
CVSSv3 Score:
5.5
Attack vector:
LOCAL
Attack complexity:
LOW
Privileges required:
NONE
User interaction:
REQUIRED
Scope:
UNCHANGED
Confidentiality impact:
HIGH
Integrity impact:
NONE
Availability impact:
NONE
CVSSv3 Vector:
CVSS:3.1/AV:L/AC:L/PR:N/UI:R/S:U/C:H/I:N/A:N
References:
https://www.intel.com/content/www/us/en/security-center/advisory/intel-sa-00314.html (CONFIRM)
USN-4254-1 (UBUNTU)
USN-4255-1 (UBUNTU)
USN-4253-1 (UBUNTU)
USN-4254-2 (UBUNTU)
USN-4253-2 (UBUNTU)
USN-4255-2 (UBUNTU)
http://packetstormsecurity.com/files/156185/Kernel-Live-Patch-Security-Notice-LSN-0062-1.html (MISC)
http://packetstormsecurity.com/files/156455/Kernel-Live-Patch-Security-Notice-LSN-0063-1.html (MISC)
USN-4285-1 (UBUNTU)
USN-4287-1 (UBUNTU)
USN-4286-2 (UBUNTU)
USN-4287-2 (UBUNTU)
[debian-lts-announce] 20200302 [SECURITY] [DLA 2114-1] linux-4.9 security update (MLIST)
USN-4284-1 (UBUNTU)
USN-4286-1 (UBUNTU)
openSUSE-SU-2020:0336 (SUSE)
https://support.apple.com/kb/HT211100 (CONFIRM)
20200324 APPLE-SA-2020-03-24-2 macOS Catalina 10.15.4, Security Update 2020-002 Mojave, Security Update 2020-002 High Sierra (FULLDISC)
CVE: CVE-2019-19965
CVE: CVE-2019-19965
Id:
CVE-2019-19965
Reference:
http://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2019-19965
Comment
: In the Linux kernel through 5.4.6, there is a NULL pointer dereference in drivers/scsi/libsas/sas_discover.c because of mishandling of port disconnection during discovery, related to a PHY down race condition, aka CID-f70267f379b5.
CVSSv2 Score:
1.9
Access vector:
LOCAL
Access complexity:
MEDIUM
Authentication:
NONE
Confidentiality impact:
NONE
Integrity impact:
NONE
Availability impact:
PARTIAL
CVSSv2 Vector:
AV:L/AC:M/Au:N/C:N/I:N/A:P
CVSSv3 Score:
4.7
Attack vector:
LOCAL
Attack complexity:
HIGH
Privileges required:
LOW
User interaction:
NONE
Scope:
UNCHANGED
Confidentiality impact:
NONE
Integrity impact:
NONE
Availability impact:
HIGH
CVSSv3 Vector:
CVSS:3.1/AV:L/AC:H/PR:L/UI:N/S:U/C:N/I:N/A:H
CWE:
476 (NULL Pointer Dereference)
References:
https://git.kernel.org/pub/scm/linux/kernel/git/torvalds/linux.git/commit/?id=f70267f379b5e5e11bdc5d72a56bf17e5feed01f (MISC)
[debian-lts-announce] 20200118 [SECURITY] [DLA 2068-1] linux security update (MLIST)
https://security.netapp.com/advisory/ntap-20200204-0002/ (CONFIRM)
USN-4285-1 (UBUNTU)
USN-4287-1 (UBUNTU)
USN-4286-2 (UBUNTU)
USN-4287-2 (UBUNTU)
[debian-lts-announce] 20200302 [SECURITY] [DLA 2114-1] linux-4.9 security update (MLIST)
USN-4284-1 (UBUNTU)
USN-4286-1 (UBUNTU)
openSUSE-SU-2020:0336 (SUSE)
CVE: CVE-2019-20054
CVE: CVE-2019-20054
Id:
CVE-2019-20054
Reference:
http://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2019-20054
Comment
: In the Linux kernel before 5.0.6, there is a NULL pointer dereference in drop_sysctl_table() in fs/proc/proc_sysctl.c, related to put_links, aka CID-23da9588037e.
CVSSv2 Score:
4.9
Access vector:
LOCAL
Access complexity:
LOW
Authentication:
NONE
Confidentiality impact:
NONE
Integrity impact:
NONE
Availability impact:
COMPLETE
CVSSv2 Vector:
AV:L/AC:L/Au:N/C:N/I:N/A:C
CVSSv3 Score:
5.5
Attack vector:
LOCAL
Attack complexity:
LOW
Privileges required:
LOW
User interaction:
NONE
Scope:
UNCHANGED
Confidentiality impact:
NONE
Integrity impact:
NONE
Availability impact:
HIGH
CVSSv3 Vector:
CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:N/I:N/A:H
CWE:
476 (NULL Pointer Dereference)
References:
https://git.kernel.org/pub/scm/linux/kernel/git/torvalds/linux.git/commit/?id=23da9588037ecdd4901db76a5b79a42b529c4ec3 (MISC)
https://cdn.kernel.org/pub/linux/kernel/v5.x/ChangeLog-5.0.6 (MISC)
https://cdn.kernel.org/pub/linux/kernel/v5.x/ChangeLog-5.0.11 (MISC)
https://git.kernel.org/pub/scm/linux/kernel/git/torvalds/linux.git/commit/?id=89189557b47b35683a27c80ee78aef18248eefb4 (MISC)
https://security.netapp.com/advisory/ntap-20200204-0002/ (CONFIRM)
openSUSE-SU-2020:0336 (SUSE)
CVE: CVE-2019-20096
CVE: CVE-2019-20096
Id:
CVE-2019-20096
Reference:
http://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2019-20096
Comment
: In the Linux kernel before 5.1, there is a memory leak in __feat_register_sp() in net/dccp/feat.c, which may cause denial of service, aka CID-1d3ff0950e2b.
CVSSv2 Score:
4.9
Access vector:
LOCAL
Access complexity:
LOW
Authentication:
NONE
Confidentiality impact:
NONE
Integrity impact:
NONE
Availability impact:
COMPLETE
CVSSv2 Vector:
AV:L/AC:L/Au:N/C:N/I:N/A:C
CVSSv3 Score:
5.5
Attack vector:
LOCAL
Attack complexity:
LOW
Privileges required:
LOW
User interaction:
NONE
Scope:
UNCHANGED
Confidentiality impact:
NONE
Integrity impact:
NONE
Availability impact:
HIGH
CVSSv3 Vector:
CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:N/I:N/A:H
CWE:
401 (Improper Release of Memory Before Removing Last Reference ('Memory Leak'))
References:
https://cdn.kernel.org/pub/linux/kernel/v5.x/ChangeLog-5.1 (MISC)
https://git.kernel.org/pub/scm/linux/kernel/git/torvalds/linux.git/commit/?id=1d3ff0950e2b40dc861b1739029649d03f591820 (MISC)
http://packetstormsecurity.com/files/156455/Kernel-Live-Patch-Security-Notice-LSN-0063-1.html (MISC)
USN-4285-1 (UBUNTU)
USN-4287-1 (UBUNTU)
USN-4286-2 (UBUNTU)
USN-4287-2 (UBUNTU)
[debian-lts-announce] 20200302 [SECURITY] [DLA 2114-1] linux-4.9 security update (MLIST)
USN-4286-1 (UBUNTU)
openSUSE-SU-2020:0336 (SUSE)
CVE: CVE-2019-19966
CVE: CVE-2019-19966
Id:
CVE-2019-19966
Reference:
http://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2019-19966
Comment
: In the Linux kernel before 5.1.6, there is a use-after-free in cpia2_exit() in drivers/media/usb/cpia2/cpia2_v4l.c that will cause denial of service, aka CID-dea37a972655.
CVSSv2 Score:
2.1
Access vector:
LOCAL
Access complexity:
LOW
Authentication:
NONE
Confidentiality impact:
NONE
Integrity impact:
NONE
Availability impact:
PARTIAL
CVSSv2 Vector:
AV:L/AC:L/Au:N/C:N/I:N/A:P
CVSSv3 Score:
4.6
Attack vector:
PHYSICAL
Attack complexity:
LOW
Privileges required:
NONE
User interaction:
NONE
Scope:
UNCHANGED
Confidentiality impact:
NONE
Integrity impact:
NONE
Availability impact:
HIGH
CVSSv3 Vector:
CVSS:3.1/AV:P/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:H
CWE:
416 (Use After Free)
References:
https://git.kernel.org/pub/scm/linux/kernel/git/torvalds/linux.git/commit/?id=dea37a97265588da604c6ba80160a287b72c7bfd (MISC)
https://cdn.kernel.org/pub/linux/kernel/v5.x/ChangeLog-5.1.6 (MISC)
[debian-lts-announce] 20200118 [SECURITY] [DLA 2068-1] linux security update (MLIST)
https://security.netapp.com/advisory/ntap-20200204-0002/ (CONFIRM)
openSUSE-SU-2020:0336 (SUSE)
CVE: CVE-2019-19447
CVE: CVE-2019-19447
Id:
CVE-2019-19447
Reference:
http://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2019-19447
Comment
: In the Linux kernel 5.0.21, mounting a crafted ext4 filesystem image, performing some operations, and unmounting can lead to a use-after-free in ext4_put_super in fs/ext4/super.c, related to dump_orphan_list in fs/ext4/super.c.
CVSSv2 Score:
6.8
Access vector:
NETWORK
Access complexity:
MEDIUM
Authentication:
NONE
Confidentiality impact:
PARTIAL
Integrity impact:
PARTIAL
Availability impact:
PARTIAL
CVSSv2 Vector:
AV:N/AC:M/Au:N/C:P/I:P/A:P
CVSSv3 Score:
7.8
Attack vector:
LOCAL
Attack complexity:
LOW
Privileges required:
NONE
User interaction:
REQUIRED
Scope:
UNCHANGED
Confidentiality impact:
HIGH
Integrity impact:
HIGH
Availability impact:
HIGH
CVSSv3 Vector:
CVSS:3.1/AV:L/AC:L/PR:N/UI:R/S:U/C:H/I:H/A:H
CWE:
416 (Use After Free)
References:
https://github.com/bobfuzzer/CVE/tree/master/CVE-2019-19447 (MISC)
https://security.netapp.com/advisory/ntap-20200103-0001/ (CONFIRM)
[debian-lts-announce] 20200302 [SECURITY] [DLA 2114-1] linux-4.9 security update (MLIST)
openSUSE-SU-2020:0336 (SUSE)
[debian-lts-announce] 20200609 [SECURITY] [DLA 2241-1] linux security update (MLIST)
[debian-lts-announce] 20200610 [SECURITY] [DLA 2241-2] linux security update (MLIST)
CVE: CVE-2019-19319
CVE: CVE-2019-19319
Id:
CVE-2019-19319
Reference:
http://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2019-19319
Comment
: In the Linux kernel before 5.2, a setxattr operation, after a mount of a crafted ext4 image, can cause a slab-out-of-bounds write access because of an ext4_xattr_set_entry use-after-free in fs/ext4/xattr.c when a large old_size value is used in a memset call, aka CID-345c0dbf3a30.
CVSSv2 Score:
4.4
Access vector:
LOCAL
Access complexity:
MEDIUM
Authentication:
NONE
Confidentiality impact:
PARTIAL
Integrity impact:
PARTIAL
Availability impact:
PARTIAL
CVSSv2 Vector:
AV:L/AC:M/Au:N/C:P/I:P/A:P
CVSSv3 Score:
6.5
Attack vector:
LOCAL
Attack complexity:
LOW
Privileges required:
HIGH
User interaction:
REQUIRED
Scope:
UNCHANGED
Confidentiality impact:
HIGH
Integrity impact:
HIGH
Availability impact:
HIGH
CVSSv3 Vector:
CVSS:3.1/AV:L/AC:L/PR:H/UI:R/S:U/C:H/I:H/A:H
CWE:
787 (Out-of-bounds Write)
References:
https://github.com/bobfuzzer/CVE/tree/master/CVE-2019-19319 (MISC)
https://security.netapp.com/advisory/ntap-20200103-0001/ (CONFIRM)
openSUSE-SU-2020:0336 (SUSE)
[debian-lts-announce] 20200609 [SECURITY] [DLA 2241-1] linux security update (MLIST)
[debian-lts-announce] 20200610 [SECURITY] [DLA 2241-2] linux security update (MLIST)
[debian-lts-announce] 20200610 [SECURITY] [DLA 2242-1] linux-4.9 security update (MLIST)
DSA-4698 (DEBIAN)
USN-4391-1 (UBUNTU)
https://git.kernel.org/pub/scm/linux/kernel/git/torvalds/linux.git/commit/?id=345c0dbf3a30 (CONFIRM)
https://bugzilla.suse.com/show_bug.cgi?id=1158021 (MISC)
CVE: CVE-2019-19767
CVE: CVE-2019-19767
Id:
CVE-2019-19767
Reference:
http://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2019-19767
Comment
: The Linux kernel before 5.4.2 mishandles ext4_expand_extra_isize, as demonstrated by use-after-free errors in __ext4_expand_extra_isize and ext4_xattr_set_entry, related to fs/ext4/inode.c and fs/ext4/super.c, aka CID-4ea99936a163.
CVSSv2 Score:
4.3
Access vector:
NETWORK
Access complexity:
MEDIUM
Authentication:
NONE
Confidentiality impact:
NONE
Integrity impact:
NONE
Availability impact:
PARTIAL
CVSSv2 Vector:
AV:N/AC:M/Au:N/C:N/I:N/A:P
CVSSv3 Score:
5.5
Attack vector:
LOCAL
Attack complexity:
LOW
Privileges required:
NONE
User interaction:
REQUIRED
Scope:
UNCHANGED
Confidentiality impact:
NONE
Integrity impact:
NONE
Availability impact:
HIGH
CVSSv3 Vector:
CVSS:3.1/AV:L/AC:L/PR:N/UI:R/S:U/C:N/I:N/A:H
CWE:
416 (Use After Free)
References:
https://cdn.kernel.org/pub/linux/kernel/v5.x/ChangeLog-5.4.2 (MISC)
https://github.com/torvalds/linux/commit/4ea99936a1630f51fc3a2d61a58ec4a1c4b7d55a (MISC)
https://bugzilla.kernel.org/show_bug.cgi?id=205609 (MISC)
https://git.kernel.org/cgit/linux/kernel/git/torvalds/linux.git/commit/?id=4ea99936a1630f51fc3a2d61a58ec4a1c4b7d55a (MISC)
https://bugzilla.kernel.org/show_bug.cgi?id=205707 (MISC)
https://security.netapp.com/advisory/ntap-20200103-0001/ (CONFIRM)
[debian-lts-announce] 20200118 [SECURITY] [DLA 2068-1] linux security update (MLIST)
USN-4258-1 (UBUNTU)
USN-4287-1 (UBUNTU)
USN-4287-2 (UBUNTU)
[debian-lts-announce] 20200302 [SECURITY] [DLA 2114-1] linux-4.9 security update (MLIST)
USN-4284-1 (UBUNTU)
openSUSE-SU-2020:0336 (SUSE)
CVE: CVE-2019-19066
CVE: CVE-2019-19066
Id:
CVE-2019-19066
Reference:
http://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2019-19066
Comment
: A memory leak in the bfad_im_get_stats() function in drivers/scsi/bfa/bfad_attr.c in the Linux kernel through 5.3.11 allows attackers to cause a denial of service (memory consumption) by triggering bfa_port_get_stats() failures, aka CID-0e62395da2bd.
CVSSv2 Score:
4.7
Access vector:
LOCAL
Access complexity:
MEDIUM
Authentication:
NONE
Confidentiality impact:
NONE
Integrity impact:
NONE
Availability impact:
COMPLETE
CVSSv2 Vector:
AV:L/AC:M/Au:N/C:N/I:N/A:C
CVSSv3 Score:
4.7
Attack vector:
LOCAL
Attack complexity:
HIGH
Privileges required:
LOW
User interaction:
NONE
Scope:
UNCHANGED
Confidentiality impact:
NONE
Integrity impact:
NONE
Availability impact:
HIGH
CVSSv3 Vector:
CVSS:3.1/AV:L/AC:H/PR:L/UI:N/S:U/C:N/I:N/A:H
CWE:
401 (Improper Release of Memory Before Removing Last Reference ('Memory Leak'))
References:
https://github.com/torvalds/linux/commit/0e62395da2bd5166d7c9e14cbc7503b256a34cb0 (MISC)
https://security.netapp.com/advisory/ntap-20191205-0001/ (CONFIRM)
[debian-lts-announce] 20200118 [SECURITY] [DLA 2068-1] linux security update (MLIST)
USN-4286-2 (UBUNTU)
[debian-lts-announce] 20200302 [SECURITY] [DLA 2114-1] linux-4.9 security update (MLIST)
USN-4286-1 (UBUNTU)
openSUSE-SU-2020:0336 (SUSE)
USN-4300-1 (UBUNTU)
USN-4301-1 (UBUNTU)
USN-4302-1 (UBUNTU)
https://www.oracle.com/security-alerts/cpuApr2021.html (MISC)
FEDORA-2019-021c968423 ()
FEDORA-2019-34a75d7e61 ()
CVE: CVE-2019-19332
CVE: CVE-2019-19332
Id:
CVE-2019-19332
Reference:
http://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2019-19332
Comment
: An out-of-bounds memory write issue was found in the Linux Kernel, version 3.13 through 5.4, in the way the Linux kernel's KVM hypervisor handled the 'KVM_GET_EMULATED_CPUID' ioctl(2) request to get CPUID features emulated by the KVM hypervisor. A user or process able to access the '/dev/kvm' device could use this flaw to crash the system, resulting in a denial of service.
CVSSv2 Score:
5.6
Access vector:
LOCAL
Access complexity:
LOW
Authentication:
NONE
Confidentiality impact:
NONE
Integrity impact:
PARTIAL
Availability impact:
COMPLETE
CVSSv2 Vector:
AV:L/AC:L/Au:N/C:N/I:P/A:C
CVSSv3 Score:
6.1
Attack vector:
LOCAL
Attack complexity:
LOW
Privileges required:
LOW
User interaction:
NONE
Scope:
UNCHANGED
Confidentiality impact:
NONE
Integrity impact:
LOW
Availability impact:
HIGH
CVSSv3 Vector:
CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:N/I:L/A:H
CWE:
787 (Out-of-bounds Write)
References:
https://www.openwall.com/lists/oss-security/2019/12/16/1 (MISC)
https://bugzilla.redhat.com/show_bug.cgi?id=CVE-2019-19332 (CONFIRM)
http://packetstormsecurity.com/files/155890/Slackware-Security-Advisory-Slackware-14.2-kernel-Updates.html (MISC)
[debian-lts-announce] 20200118 [SECURITY] [DLA 2068-1] linux security update (MLIST)
USN-4254-1 (UBUNTU)
USN-4254-2 (UBUNTU)
https://security.netapp.com/advisory/ntap-20200204-0002/ (CONFIRM)
USN-4258-1 (UBUNTU)
USN-4287-1 (UBUNTU)
USN-4287-2 (UBUNTU)
[debian-lts-announce] 20200302 [SECURITY] [DLA 2114-1] linux-4.9 security update (MLIST)
USN-4284-1 (UBUNTU)
openSUSE-SU-2020:0336 (SUSE)
https://lore.kernel.org/kvm/000000000000ea5ec20598d90e50%40google.com/ (MISC)
CVE: CVE-2019-19537
CVE: CVE-2019-19537
Id:
CVE-2019-19537
Reference:
http://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2019-19537
Comment
: In the Linux kernel before 5.2.10, there is a race condition bug that can be caused by a malicious USB device in the USB character device driver layer, aka CID-303911cfc5b9. This affects drivers/usb/core/file.c.
CVSSv2 Score:
4.7
Access vector:
LOCAL
Access complexity:
MEDIUM
Authentication:
NONE
Confidentiality impact:
NONE
Integrity impact:
NONE
Availability impact:
COMPLETE
CVSSv2 Vector:
AV:L/AC:M/Au:N/C:N/I:N/A:C
CVSSv3 Score:
4.2
Attack vector:
PHYSICAL
Attack complexity:
HIGH
Privileges required:
NONE
User interaction:
NONE
Scope:
UNCHANGED
Confidentiality impact:
NONE
Integrity impact:
NONE
Availability impact:
HIGH
CVSSv3 Vector:
CVSS:3.1/AV:P/AC:H/PR:N/UI:N/S:U/C:N/I:N/A:H
CWE:
362 (Concurrent Execution using Shared Resource with Improper Synchronization ('Race Condition'))
References:
https://cdn.kernel.org/pub/linux/kernel/v5.x/ChangeLog-5.2.10 (MISC)
https://git.kernel.org/pub/scm/linux/kernel/git/torvalds/linux.git/commit/?id=303911cfc5b95d33687d9046133ff184cf5043ff (MISC)
[oss-security] 20191203 Linux kernel: multiple vulnerabilities in the USB subsystem x3 (MLIST)
[debian-lts-announce] 20200118 [SECURITY] [DLA 2068-1] linux security update (MLIST)
[debian-lts-announce] 20200302 [SECURITY] [DLA 2114-1] linux-4.9 security update (MLIST)
openSUSE-SU-2020:0336 (SUSE)
CVE: CVE-2019-19535
CVE: CVE-2019-19535
Id:
CVE-2019-19535
Reference:
http://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2019-19535
Comment
: In the Linux kernel before 5.2.9, there is an info-leak bug that can be caused by a malicious USB device in the drivers/net/can/usb/peak_usb/pcan_usb_fd.c driver, aka CID-30a8beeb3042.
CVSSv2 Score:
2.1
Access vector:
LOCAL
Access complexity:
LOW
Authentication:
NONE
Confidentiality impact:
PARTIAL
Integrity impact:
NONE
Availability impact:
NONE
CVSSv2 Vector:
AV:L/AC:L/Au:N/C:P/I:N/A:N
CVSSv3 Score:
4.6
Attack vector:
PHYSICAL
Attack complexity:
LOW
Privileges required:
NONE
User interaction:
NONE
Scope:
UNCHANGED
Confidentiality impact:
HIGH
Integrity impact:
NONE
Availability impact:
NONE
CVSSv3 Vector:
CVSS:3.1/AV:P/AC:L/PR:N/UI:N/S:U/C:H/I:N/A:N
CWE:
908 ()
References:
https://cdn.kernel.org/pub/linux/kernel/v5.x/ChangeLog-5.2.9 (MISC)
https://git.kernel.org/pub/scm/linux/kernel/git/torvalds/linux.git/commit/?id=30a8beeb3042f49d0537b7050fd21b490166a3d9 (MISC)
[oss-security] 20191203 Linux kernel: multiple vulnerabilities in the USB subsystem x3 (MLIST)
[debian-lts-announce] 20200302 [SECURITY] [DLA 2114-1] linux-4.9 security update (MLIST)
openSUSE-SU-2020:0336 (SUSE)
https://www.oracle.com/security-alerts/cpuApr2021.html (MISC)
CVE: CVE-2019-19527
CVE: CVE-2019-19527
Id:
CVE-2019-19527
Reference:
http://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2019-19527
Comment
: In the Linux kernel before 5.2.10, there is a use-after-free bug that can be caused by a malicious USB device in the drivers/hid/usbhid/hiddev.c driver, aka CID-9c09b214f30e.
CVSSv2 Score:
7.2
Access vector:
LOCAL
Access complexity:
LOW
Authentication:
NONE
Confidentiality impact:
COMPLETE
Integrity impact:
COMPLETE
Availability impact:
COMPLETE
CVSSv2 Vector:
AV:L/AC:L/Au:N/C:C/I:C/A:C
CVSSv3 Score:
6.8
Attack vector:
PHYSICAL
Attack complexity:
LOW
Privileges required:
NONE
User interaction:
NONE
Scope:
UNCHANGED
Confidentiality impact:
HIGH
Integrity impact:
HIGH
Availability impact:
HIGH
CVSSv3 Vector:
CVSS:3.1/AV:P/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H
CWE:
416 (Use After Free)
References:
https://cdn.kernel.org/pub/linux/kernel/v5.x/ChangeLog-5.2.10 (MISC)
https://git.kernel.org/pub/scm/linux/kernel/git/torvalds/linux.git/commit/?id=9c09b214f30e3c11f9b0b03f89442df03643794d (MISC)
https://git.kernel.org/pub/scm/linux/kernel/git/torvalds/linux.git/commit/?id=6d4472d7bec39917b54e4e80245784ea5d60ce49 (MISC)
[oss-security] 20191203 Linux kernel: multiple vulnerabilities in the USB subsystem x3 (MLIST)
[debian-lts-announce] 20200118 [SECURITY] [DLA 2068-1] linux security update (MLIST)
[debian-lts-announce] 20200302 [SECURITY] [DLA 2114-1] linux-4.9 security update (MLIST)
openSUSE-SU-2020:0336 (SUSE)
CVE: CVE-2019-19533
CVE: CVE-2019-19533
Id:
CVE-2019-19533
Reference:
http://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2019-19533
Comment
: In the Linux kernel before 5.3.4, there is an info-leak bug that can be caused by a malicious USB device in the drivers/media/usb/ttusb-dec/ttusb_dec.c driver, aka CID-a10feaf8c464.
CVSSv2 Score:
2.1
Access vector:
LOCAL
Access complexity:
LOW
Authentication:
NONE
Confidentiality impact:
PARTIAL
Integrity impact:
NONE
Availability impact:
NONE
CVSSv2 Vector:
AV:L/AC:L/Au:N/C:P/I:N/A:N
CVSSv3 Score:
2.4
Attack vector:
PHYSICAL
Attack complexity:
LOW
Privileges required:
NONE
User interaction:
NONE
Scope:
UNCHANGED
Confidentiality impact:
LOW
Integrity impact:
NONE
Availability impact:
NONE
CVSSv3 Vector:
CVSS:3.1/AV:P/AC:L/PR:N/UI:N/S:U/C:L/I:N/A:N
CWE:
772 (Missing Release of Resource after Effective Lifetime)
References:
https://cdn.kernel.org/pub/linux/kernel/v5.x/ChangeLog-5.3.4 (MISC)
https://git.kernel.org/pub/scm/linux/kernel/git/torvalds/linux.git/commit/?id=a10feaf8c464c3f9cfdd3a8a7ce17e1c0d498da1 (MISC)
[oss-security] 20191203 Linux kernel: multiple vulnerabilities in the USB subsystem x3 (MLIST)
[debian-lts-announce] 20200118 [SECURITY] [DLA 2068-1] linux security update (MLIST)
[debian-lts-announce] 20200302 [SECURITY] [DLA 2114-1] linux-4.9 security update (MLIST)
openSUSE-SU-2020:0336 (SUSE)
CVE: CVE-2019-19532
CVE: CVE-2019-19532
Id:
CVE-2019-19532
Reference:
http://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2019-19532
Comment
: In the Linux kernel before 5.3.9, there are multiple out-of-bounds write bugs that can be caused by a malicious USB device in the Linux kernel HID drivers, aka CID-d9d4b1e46d95. This affects drivers/hid/hid-axff.c, drivers/hid/hid-dr.c, drivers/hid/hid-emsff.c, drivers/hid/hid-gaff.c, drivers/hid/hid-holtekff.c, drivers/hid/hid-lg2ff.c, drivers/hid/hid-lg3ff.c, drivers/hid/hid-lg4ff.c, drivers/hid/hid-lgff.c, drivers/hid/hid-logitech-hidpp.c, drivers/hid/hid-microsoft.c, drivers/hid/hid-sony.c, drivers/hid/hid-tmff.c, and drivers/hid/hid-zpff.c.
CVSSv2 Score:
4.6
Access vector:
LOCAL
Access complexity:
LOW
Authentication:
NONE
Confidentiality impact:
PARTIAL
Integrity impact:
PARTIAL
Availability impact:
PARTIAL
CVSSv2 Vector:
AV:L/AC:L/Au:N/C:P/I:P/A:P
CVSSv3 Score:
6.8
Attack vector:
PHYSICAL
Attack complexity:
LOW
Privileges required:
NONE
User interaction:
NONE
Scope:
UNCHANGED
Confidentiality impact:
HIGH
Integrity impact:
HIGH
Availability impact:
HIGH
CVSSv3 Vector:
CVSS:3.1/AV:P/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H
CWE:
787 (Out-of-bounds Write)
References:
https://git.kernel.org/pub/scm/linux/kernel/git/torvalds/linux.git/commit/?id=d9d4b1e46d9543a82c23f6df03f4ad697dab361b (MISC)
https://cdn.kernel.org/pub/linux/kernel/v5.x/ChangeLog-5.3.9 (MISC)
[oss-security] 20191203 Linux kernel: multiple vulnerabilities in the USB subsystem x3 (MLIST)
USN-4226-1 (UBUNTU)
[debian-lts-announce] 20200118 [SECURITY] [DLA 2068-1] linux security update (MLIST)
[debian-lts-announce] 20200302 [SECURITY] [DLA 2114-1] linux-4.9 security update (MLIST)
openSUSE-SU-2020:0336 (SUSE)
CVE: CVE-2019-19523
CVE: CVE-2019-19523
Id:
CVE-2019-19523
Reference:
http://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2019-19523
Comment
: In the Linux kernel before 5.3.7, there is a use-after-free bug that can be caused by a malicious USB device in the drivers/usb/misc/adutux.c driver, aka CID-44efc269db79.
CVSSv2 Score:
4.9
Access vector:
LOCAL
Access complexity:
LOW
Authentication:
NONE
Confidentiality impact:
NONE
Integrity impact:
NONE
Availability impact:
COMPLETE
CVSSv2 Vector:
AV:L/AC:L/Au:N/C:N/I:N/A:C
CVSSv3 Score:
4.6
Attack vector:
PHYSICAL
Attack complexity:
LOW
Privileges required:
NONE
User interaction:
NONE
Scope:
UNCHANGED
Confidentiality impact:
NONE
Integrity impact:
NONE
Availability impact:
HIGH
CVSSv3 Vector:
CVSS:3.1/AV:P/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:H
CWE:
416 (Use After Free)
References:
https://git.kernel.org/pub/scm/linux/kernel/git/torvalds/linux.git/commit/?id=44efc269db7929f6275a1fa927ef082e533ecde0 (MISC)
https://cdn.kernel.org/pub/linux/kernel/v5.x/ChangeLog-5.3.7 (MISC)
[oss-security] 20191203 Linux kernel: multiple vulnerabilities in the USB subsystem x3 (MLIST)
[debian-lts-announce] 20200118 [SECURITY] [DLA 2068-1] linux security update (MLIST)
[debian-lts-announce] 20200302 [SECURITY] [DLA 2114-1] linux-4.9 security update (MLIST)
openSUSE-SU-2020:0336 (SUSE)
CVE: CVE-2019-15213
CVE: CVE-2019-15213
Id:
CVE-2019-15213
Reference:
http://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2019-15213
Comment
: An issue was discovered in the Linux kernel before 5.2.3. There is a use-after-free caused by a malicious USB device in the drivers/media/usb/dvb-usb/dvb-usb-init.c driver.
CVSSv2 Score:
4.9
Access vector:
LOCAL
Access complexity:
LOW
Authentication:
NONE
Confidentiality impact:
NONE
Integrity impact:
NONE
Availability impact:
COMPLETE
CVSSv2 Vector:
AV:L/AC:L/Au:N/C:N/I:N/A:C
CVSSv3 Score:
4.6
Attack vector:
PHYSICAL
Attack complexity:
LOW
Privileges required:
NONE
User interaction:
NONE
Scope:
UNCHANGED
Confidentiality impact:
NONE
Integrity impact:
NONE
Availability impact:
HIGH
CVSSv3 Vector:
CVSS:3.1/AV:P/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:H
CWE:
416 (Use After Free)
References:
https://cdn.kernel.org/pub/linux/kernel/v5.x/ChangeLog-5.2.3 (MISC)
https://git.kernel.org/pub/scm/linux/kernel/git/torvalds/linux.git/commit/?id=6cf97230cd5f36b7665099083272595c55d72be7 (MISC)
https://syzkaller.appspot.com/bug?id=a53c9c9dd2981bfdbfbcbc1ddbd35595eda8bced (MISC)
[oss-security] 20190820 Linux kernel: multiple vulnerabilities in the USB subsystem x2 (MLIST)
https://security.netapp.com/advisory/ntap-20190905-0002/ (CONFIRM)
openSUSE-SU-2019:2675 (SUSE)
CVE: CVE-2019-19531
CVE: CVE-2019-19531
Id:
CVE-2019-19531
Reference:
http://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2019-19531
Comment
: In the Linux kernel before 5.2.9, there is a use-after-free bug that can be caused by a malicious USB device in the drivers/usb/misc/yurex.c driver, aka CID-fc05481b2fca.
CVSSv2 Score:
4.6
Access vector:
LOCAL
Access complexity:
LOW
Authentication:
NONE
Confidentiality impact:
PARTIAL
Integrity impact:
PARTIAL
Availability impact:
PARTIAL
CVSSv2 Vector:
AV:L/AC:L/Au:N/C:P/I:P/A:P
CVSSv3 Score:
6.8
Attack vector:
PHYSICAL
Attack complexity:
LOW
Privileges required:
NONE
User interaction:
NONE
Scope:
UNCHANGED
Confidentiality impact:
HIGH
Integrity impact:
HIGH
Availability impact:
HIGH
CVSSv3 Vector:
CVSS:3.1/AV:P/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H
CWE:
416 (Use After Free)
References:
https://git.kernel.org/pub/scm/linux/kernel/git/torvalds/linux.git/commit/?id=fc05481b2fcabaaeccf63e32ac1baab54e5b6963 (MISC)
https://cdn.kernel.org/pub/linux/kernel/v5.x/ChangeLog-5.2.9 (MISC)
[oss-security] 20191203 Linux kernel: multiple vulnerabilities in the USB subsystem x3 (MLIST)
openSUSE-SU-2019:2675 (SUSE)
[debian-lts-announce] 20200118 [SECURITY] [DLA 2068-1] linux security update (MLIST)
[debian-lts-announce] 20200302 [SECURITY] [DLA 2114-1] linux-4.9 security update (MLIST)
CVE: CVE-2019-19525
CVE: CVE-2019-19525
Id:
CVE-2019-19525
Reference:
http://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2019-19525
Comment
: In the Linux kernel before 5.3.6, there is a use-after-free bug that can be caused by a malicious USB device in the drivers/net/ieee802154/atusb.c driver, aka CID-7fd25e6fc035.
CVSSv2 Score:
4.9
Access vector:
LOCAL
Access complexity:
LOW
Authentication:
NONE
Confidentiality impact:
NONE
Integrity impact:
NONE
Availability impact:
COMPLETE
CVSSv2 Vector:
AV:L/AC:L/Au:N/C:N/I:N/A:C
CVSSv3 Score:
4.6
Attack vector:
PHYSICAL
Attack complexity:
LOW
Privileges required:
NONE
User interaction:
NONE
Scope:
UNCHANGED
Confidentiality impact:
NONE
Integrity impact:
NONE
Availability impact:
HIGH
CVSSv3 Vector:
CVSS:3.1/AV:P/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:H
CWE:
416 (Use After Free)
References:
https://git.kernel.org/pub/scm/linux/kernel/git/torvalds/linux.git/commit/?id=7fd25e6fc035f4b04b75bca6d7e8daa069603a76 (MISC)
https://cdn.kernel.org/pub/linux/kernel/v5.x/ChangeLog-5.3.6 (MISC)
[oss-security] 20191203 Linux kernel: multiple vulnerabilities in the USB subsystem x3 (MLIST)
openSUSE-SU-2019:2675 (SUSE)
[debian-lts-announce] 20200302 [SECURITY] [DLA 2114-1] linux-4.9 security update (MLIST)
CVE: CVE-2019-19530
CVE: CVE-2019-19530
Id:
CVE-2019-19530
Reference:
http://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2019-19530
Comment
: In the Linux kernel before 5.2.10, there is a use-after-free bug that can be caused by a malicious USB device in the drivers/usb/class/cdc-acm.c driver, aka CID-c52873e5a1ef.
CVSSv2 Score:
4.9
Access vector:
LOCAL
Access complexity:
LOW
Authentication:
NONE
Confidentiality impact:
NONE
Integrity impact:
NONE
Availability impact:
COMPLETE
CVSSv2 Vector:
AV:L/AC:L/Au:N/C:N/I:N/A:C
CVSSv3 Score:
4.6
Attack vector:
PHYSICAL
Attack complexity:
LOW
Privileges required:
NONE
User interaction:
NONE
Scope:
UNCHANGED
Confidentiality impact:
NONE
Integrity impact:
NONE
Availability impact:
HIGH
CVSSv3 Vector:
CVSS:3.1/AV:P/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:H
CWE:
416 (Use After Free)
References:
https://cdn.kernel.org/pub/linux/kernel/v5.x/ChangeLog-5.2.10 (MISC)
https://git.kernel.org/pub/scm/linux/kernel/git/torvalds/linux.git/commit/?id=c52873e5a1ef72f845526d9f6a50704433f9c625 (MISC)
[oss-security] 20191203 Linux kernel: multiple vulnerabilities in the USB subsystem x3 (MLIST)
openSUSE-SU-2019:2675 (SUSE)
[debian-lts-announce] 20200118 [SECURITY] [DLA 2068-1] linux security update (MLIST)
[debian-lts-announce] 20200302 [SECURITY] [DLA 2114-1] linux-4.9 security update (MLIST)
CVE: CVE-2019-19536
CVE: CVE-2019-19536
Id:
CVE-2019-19536
Reference:
http://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2019-19536
Comment
: In the Linux kernel before 5.2.9, there is an info-leak bug that can be caused by a malicious USB device in the drivers/net/can/usb/peak_usb/pcan_usb_pro.c driver, aka CID-ead16e53c2f0.
CVSSv2 Score:
2.1
Access vector:
LOCAL
Access complexity:
LOW
Authentication:
NONE
Confidentiality impact:
PARTIAL
Integrity impact:
NONE
Availability impact:
NONE
CVSSv2 Vector:
AV:L/AC:L/Au:N/C:P/I:N/A:N
CVSSv3 Score:
4.6
Attack vector:
PHYSICAL
Attack complexity:
LOW
Privileges required:
NONE
User interaction:
NONE
Scope:
UNCHANGED
Confidentiality impact:
HIGH
Integrity impact:
NONE
Availability impact:
NONE
CVSSv3 Vector:
CVSS:3.1/AV:P/AC:L/PR:N/UI:N/S:U/C:H/I:N/A:N
CWE:
909 ()
References:
https://cdn.kernel.org/pub/linux/kernel/v5.x/ChangeLog-5.2.9 (MISC)
https://git.kernel.org/pub/scm/linux/kernel/git/torvalds/linux.git/commit/?id=ead16e53c2f0ed946d82d4037c630e2f60f4ab69 (MISC)
[oss-security] 20191203 Linux kernel: multiple vulnerabilities in the USB subsystem x3 (MLIST)
openSUSE-SU-2019:2675 (SUSE)
[debian-lts-announce] 20200118 [SECURITY] [DLA 2068-1] linux security update (MLIST)
[debian-lts-announce] 20200302 [SECURITY] [DLA 2114-1] linux-4.9 security update (MLIST)
CVE: CVE-2019-19524
CVE: CVE-2019-19524
Id:
CVE-2019-19524
Reference:
http://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2019-19524
Comment
: In the Linux kernel before 5.3.12, there is a use-after-free bug that can be caused by a malicious USB device in the drivers/input/ff-memless.c driver, aka CID-fa3a5a1880c9.
CVSSv2 Score:
4.9
Access vector:
LOCAL
Access complexity:
LOW
Authentication:
NONE
Confidentiality impact:
NONE
Integrity impact:
NONE
Availability impact:
COMPLETE
CVSSv2 Vector:
AV:L/AC:L/Au:N/C:N/I:N/A:C
CVSSv3 Score:
4.6
Attack vector:
PHYSICAL
Attack complexity:
LOW
Privileges required:
NONE
User interaction:
NONE
Scope:
UNCHANGED
Confidentiality impact:
NONE
Integrity impact:
NONE
Availability impact:
HIGH
CVSSv3 Vector:
CVSS:3.1/AV:P/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:H
CWE:
416 (Use After Free)
References:
https://git.kernel.org/pub/scm/linux/kernel/git/torvalds/linux.git/commit/?id=fa3a5a1880c91bb92594ad42dfe9eedad7996b86 (MISC)
https://cdn.kernel.org/pub/linux/kernel/v5.x/ChangeLog-5.3.12 (MISC)
[oss-security] 20191203 Linux kernel: multiple vulnerabilities in the USB subsystem x3 (MLIST)
openSUSE-SU-2019:2675 (SUSE)
USN-4228-1 (UBUNTU)
USN-4227-1 (UBUNTU)
USN-4225-1 (UBUNTU)
USN-4228-2 (UBUNTU)
USN-4226-1 (UBUNTU)
USN-4227-2 (UBUNTU)
20200109 [slackware-security] Slackware 14.2 kernel (SSA:2020-008-01) (BUGTRAQ)
http://packetstormsecurity.com/files/155890/Slackware-Security-Advisory-Slackware-14.2-kernel-Updates.html (MISC)
[debian-lts-announce] 20200118 [SECURITY] [DLA 2068-1] linux security update (MLIST)
USN-4225-2 (UBUNTU)
[debian-lts-announce] 20200302 [SECURITY] [DLA 2114-1] linux-4.9 security update (MLIST)
CVE: CVE-2019-19534
CVE: CVE-2019-19534
Id:
CVE-2019-19534
Reference:
http://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2019-19534
Comment
: In the Linux kernel before 5.3.11, there is an info-leak bug that can be caused by a malicious USB device in the drivers/net/can/usb/peak_usb/pcan_usb_core.c driver, aka CID-f7a1337f0d29.
CVSSv2 Score:
2.1
Access vector:
LOCAL
Access complexity:
LOW
Authentication:
NONE
Confidentiality impact:
PARTIAL
Integrity impact:
NONE
Availability impact:
NONE
CVSSv2 Vector:
AV:L/AC:L/Au:N/C:P/I:N/A:N
CVSSv3 Score:
2.4
Attack vector:
PHYSICAL
Attack complexity:
LOW
Privileges required:
NONE
User interaction:
NONE
Scope:
UNCHANGED
Confidentiality impact:
LOW
Integrity impact:
NONE
Availability impact:
NONE
CVSSv3 Vector:
CVSS:3.1/AV:P/AC:L/PR:N/UI:N/S:U/C:L/I:N/A:N
CWE:
909 ()
References:
https://cdn.kernel.org/pub/linux/kernel/v5.x/ChangeLog-5.3.11 (MISC)
https://git.kernel.org/pub/scm/linux/kernel/git/torvalds/linux.git/commit/?id=f7a1337f0d29b98733c8824e165fca3371d7d4fd (MISC)
[oss-security] 20191203 Linux kernel: multiple vulnerabilities in the USB subsystem x3 (MLIST)
openSUSE-SU-2019:2675 (SUSE)
USN-4228-1 (UBUNTU)
USN-4227-1 (UBUNTU)
USN-4225-1 (UBUNTU)
USN-4228-2 (UBUNTU)
USN-4226-1 (UBUNTU)
USN-4227-2 (UBUNTU)
[debian-lts-announce] 20200118 [SECURITY] [DLA 2068-1] linux security update (MLIST)
USN-4225-2 (UBUNTU)
[debian-lts-announce] 20200302 [SECURITY] [DLA 2114-1] linux-4.9 security update (MLIST)
CVE: CVE-2019-14901
CVE: CVE-2019-14901
Id:
CVE-2019-14901
Reference:
http://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2019-14901
Comment
: A heap overflow flaw was found in the Linux kernel, all versions 3.x.x and 4.x.x before 4.18.0, in Marvell WiFi chip driver. The vulnerability allows a remote attacker to cause a system crash, resulting in a denial of service, or execute arbitrary code. The highest threat with this vulnerability is with the availability of the system. If code execution occurs, the code will run with the permissions of root. This will affect both confidentiality and integrity of files on the system.
CVSSv2 Score:
10
Access vector:
NETWORK
Access complexity:
LOW
Authentication:
NONE
Confidentiality impact:
COMPLETE
Integrity impact:
COMPLETE
Availability impact:
COMPLETE
CVSSv2 Vector:
AV:N/AC:L/Au:N/C:C/I:C/A:C
CVSSv3 Score:
9.8
Attack vector:
NETWORK
Attack complexity:
LOW
Privileges required:
NONE
User interaction:
NONE
Scope:
UNCHANGED
Confidentiality impact:
HIGH
Integrity impact:
HIGH
Availability impact:
HIGH
CVSSv3 Vector:
CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H
CWE:
400 (Uncontrolled Resource Consumption ('Resource Exhaustion'))
References:
https://bugzilla.redhat.com/show_bug.cgi?id=CVE-2019-14901 (CONFIRM)
openSUSE-SU-2019:2675 (SUSE)
USN-4228-1 (UBUNTU)
USN-4227-1 (UBUNTU)
USN-4225-1 (UBUNTU)
USN-4228-2 (UBUNTU)
USN-4226-1 (UBUNTU)
USN-4227-2 (UBUNTU)
http://packetstormsecurity.com/files/155879/Kernel-Live-Patch-Security-Notice-LSN-0061-1.html (MISC)
[debian-lts-announce] 20200118 [SECURITY] [DLA 2068-1] linux security update (MLIST)
USN-4225-2 (UBUNTU)
RHSA-2020:0204 (REDHAT)
http://packetstormsecurity.com/files/156185/Kernel-Live-Patch-Security-Notice-LSN-0062-1.html (MISC)
RHSA-2020:0328 (REDHAT)
RHSA-2020:0339 (REDHAT)
RHSA-2020:0375 (REDHAT)
RHSA-2020:0374 (REDHAT)
[debian-lts-announce] 20200302 [SECURITY] [DLA 2114-1] linux-4.9 security update (MLIST)
https://lists.fedoraproject.org/archives/list/package-announce%40lists.fedoraproject.org/message/MN6MLCN7G7VFTSXSZYXKXEFCUMFBUAXQ/ (MISC)
https://lists.fedoraproject.org/archives/list/package-announce%40lists.fedoraproject.org/message/D4ISVNIC44SOGXTUBCIZFSUNQJ5LRKNZ/ (MISC)
CVE: CVE-2019-14895
CVE: CVE-2019-14895
Id:
CVE-2019-14895
Reference:
http://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2019-14895
Comment
: A heap-based buffer overflow was discovered in the Linux kernel, all versions 3.x.x and 4.x.x before 4.18.0, in Marvell WiFi chip driver. The flaw could occur when the station attempts a connection negotiation during the handling of the remote devices country settings. This could allow the remote device to cause a denial of service (system crash) or possibly execute arbitrary code.
CVSSv2 Score:
7.5
Access vector:
NETWORK
Access complexity:
LOW
Authentication:
NONE
Confidentiality impact:
PARTIAL
Integrity impact:
PARTIAL
Availability impact:
PARTIAL
CVSSv2 Vector:
AV:N/AC:L/Au:N/C:P/I:P/A:P
CVSSv3 Score:
9.8
Attack vector:
NETWORK
Attack complexity:
LOW
Privileges required:
NONE
User interaction:
NONE
Scope:
UNCHANGED
Confidentiality impact:
HIGH
Integrity impact:
HIGH
Availability impact:
HIGH
CVSSv3 Vector:
CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H
CWE:
122 (Heap-based Buffer Overflow)
References:
https://www.openwall.com/lists/oss-security/2019/11/22/2 (MISC)
https://bugzilla.redhat.com/show_bug.cgi?id=CVE-2019-14895 (CONFIRM)
openSUSE-SU-2019:2675 (SUSE)
USN-4228-1 (UBUNTU)
USN-4227-1 (UBUNTU)
USN-4225-1 (UBUNTU)
USN-4228-2 (UBUNTU)
USN-4226-1 (UBUNTU)
USN-4227-2 (UBUNTU)
http://packetstormsecurity.com/files/155879/Kernel-Live-Patch-Security-Notice-LSN-0061-1.html (MISC)
[debian-lts-announce] 20200118 [SECURITY] [DLA 2068-1] linux security update (MLIST)
USN-4225-2 (UBUNTU)
http://packetstormsecurity.com/files/156185/Kernel-Live-Patch-Security-Notice-LSN-0062-1.html (MISC)
RHSA-2020:0328 (REDHAT)
RHSA-2020:0339 (REDHAT)
RHSA-2020:0375 (REDHAT)
RHSA-2020:0374 (REDHAT)
RHSA-2020:0543 (REDHAT)
RHSA-2020:0592 (REDHAT)
RHSA-2020:0609 (REDHAT)
[debian-lts-announce] 20200302 [SECURITY] [DLA 2114-1] linux-4.9 security update (MLIST)
RHSA-2020:0653 (REDHAT)
RHSA-2020:0661 (REDHAT)
RHSA-2020:0664 (REDHAT)
https://lists.fedoraproject.org/archives/list/package-announce%40lists.fedoraproject.org/message/MN6MLCN7G7VFTSXSZYXKXEFCUMFBUAXQ/ (MISC)
https://lists.fedoraproject.org/archives/list/package-announce%40lists.fedoraproject.org/message/D4ISVNIC44SOGXTUBCIZFSUNQJ5LRKNZ/ (MISC)
CVE: CVE-2019-18660
CVE: CVE-2019-18660
Id:
CVE-2019-18660
Reference:
http://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2019-18660
Comment
: The Linux kernel before 5.4.1 on powerpc allows Information Exposure because the Spectre-RSB mitigation is not in place for all applicable CPUs, aka CID-39e72bf96f58. This is related to arch/powerpc/kernel/entry_64.S and arch/powerpc/kernel/security.c.
CVSSv2 Score:
1.9
Access vector:
LOCAL
Access complexity:
MEDIUM
Authentication:
NONE
Confidentiality impact:
PARTIAL
Integrity impact:
NONE
Availability impact:
NONE
CVSSv2 Vector:
AV:L/AC:M/Au:N/C:P/I:N/A:N
CVSSv3 Score:
4.7
Attack vector:
LOCAL
Attack complexity:
HIGH
Privileges required:
LOW
User interaction:
NONE
Scope:
UNCHANGED
Confidentiality impact:
HIGH
Integrity impact:
NONE
Availability impact:
NONE
CVSSv3 Vector:
CVSS:3.1/AV:L/AC:H/PR:L/UI:N/S:U/C:H/I:N/A:N
CWE:
200 (Information Exposure)
References:
https://www.openwall.com/lists/oss-security/2019/11/27/1 (MISC)
https://git.kernel.org/pub/scm/linux/kernel/git/torvalds/linux.git/commit/?id=39e72bf96f5847ba87cc5bd7a3ce0fed813dc9ad (MISC)
[oss-security] 20191128 CVE-2019-18660: Linux kernel: powerpc: missing Spectre-RSB mitigation (MLIST)
https://cdn.kernel.org/pub/linux/kernel/v5.x/ChangeLog-5.4.1 (CONFIRM)
openSUSE-SU-2019:2675 (SUSE)
https://security.netapp.com/advisory/ntap-20200103-0001/ (CONFIRM)
USN-4228-1 (UBUNTU)
USN-4227-1 (UBUNTU)
USN-4226-1 (UBUNTU)
USN-4225-1 (UBUNTU)
USN-4228-2 (UBUNTU)
USN-4227-2 (UBUNTU)
20200109 [slackware-security] Slackware 14.2 kernel (SSA:2020-008-01) (BUGTRAQ)
http://packetstormsecurity.com/files/155890/Slackware-Security-Advisory-Slackware-14.2-kernel-Updates.html (MISC)
RHSA-2020:0174 (REDHAT)
USN-4225-2 (UBUNTU)
FEDORA-2019-b86a7bdba0 ()
FEDORA-2019-124a241044 ()
CVE: CVE-2019-18683
CVE: CVE-2019-18683
Id:
CVE-2019-18683
Reference:
http://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2019-18683
Comment
: An issue was discovered in drivers/media/platform/vivid in the Linux kernel through 5.3.8. It is exploitable for privilege escalation on some Linux distributions where local users have /dev/video0 access, but only if the driver happens to be loaded. There are multiple race conditions during streaming stopping in this driver (part of the V4L2 subsystem). These issues are caused by wrong mutex locking in vivid_stop_generating_vid_cap(), vivid_stop_generating_vid_out(), sdr_cap_stop_streaming(), and the corresponding kthreads. At least one of these race conditions leads to a use-after-free.
CVSSv2 Score:
6.9
Access vector:
LOCAL
Access complexity:
MEDIUM
Authentication:
NONE
Confidentiality impact:
COMPLETE
Integrity impact:
COMPLETE
Availability impact:
COMPLETE
CVSSv2 Vector:
AV:L/AC:M/Au:N/C:C/I:C/A:C
CVSSv3 Score:
7
Attack vector:
LOCAL
Attack complexity:
HIGH
Privileges required:
LOW
User interaction:
NONE
Scope:
UNCHANGED
Confidentiality impact:
HIGH
Integrity impact:
HIGH
Availability impact:
HIGH
CVSSv3 Vector:
CVSS:3.1/AV:L/AC:H/PR:L/UI:N/S:U/C:H/I:H/A:H
CWE:
362 (Concurrent Execution using Shared Resource with Improper Synchronization ('Race Condition'))
References:
https://www.openwall.com/lists/oss-security/2019/11/02/1 (MISC)
[oss-security] 20191105 Re: [ Linux kernel ] Exploitable bugs in drivers/media/platform/vivid (MLIST)
https://security.netapp.com/advisory/ntap-20191205-0001/ (CONFIRM)
openSUSE-SU-2019:2675 (SUSE)
20200109 [slackware-security] Slackware 14.2 kernel (SSA:2020-008-01) (BUGTRAQ)
http://packetstormsecurity.com/files/155890/Slackware-Security-Advisory-Slackware-14.2-kernel-Updates.html (MISC)
USN-4254-1 (UBUNTU)
USN-4254-2 (UBUNTU)
USN-4258-1 (UBUNTU)
USN-4287-1 (UBUNTU)
USN-4287-2 (UBUNTU)
[debian-lts-announce] 20200302 [SECURITY] [DLA 2114-1] linux-4.9 security update (MLIST)
USN-4284-1 (UBUNTU)
https://lore.kernel.org/lkml/20191103221719.27118-1-alex.popov%40linux.com/ ()
CVE: CVE-2019-19062
CVE: CVE-2019-19062
Id:
CVE-2019-19062
Reference:
http://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2019-19062
Comment
: A memory leak in the crypto_report() function in crypto/crypto_user_base.c in the Linux kernel through 5.3.11 allows attackers to cause a denial of service (memory consumption) by triggering crypto_report_alg() failures, aka CID-ffdde5932042.
CVSSv2 Score:
4.7
Access vector:
LOCAL
Access complexity:
MEDIUM
Authentication:
NONE
Confidentiality impact:
NONE
Integrity impact:
NONE
Availability impact:
COMPLETE
CVSSv2 Vector:
AV:L/AC:M/Au:N/C:N/I:N/A:C
CVSSv3 Score:
4.7
Attack vector:
LOCAL
Attack complexity:
HIGH
Privileges required:
LOW
User interaction:
NONE
Scope:
UNCHANGED
Confidentiality impact:
NONE
Integrity impact:
NONE
Availability impact:
HIGH
CVSSv3 Vector:
CVSS:3.1/AV:L/AC:H/PR:L/UI:N/S:U/C:N/I:N/A:H
CWE:
401 (Improper Release of Memory Before Removing Last Reference ('Memory Leak'))
References:
https://github.com/torvalds/linux/commit/ffdde5932042600c6807d46c1550b28b0db6a3bc (MISC)
https://security.netapp.com/advisory/ntap-20191205-0001/ (CONFIRM)
openSUSE-SU-2019:2675 (SUSE)
20200109 [slackware-security] Slackware 14.2 kernel (SSA:2020-008-01) (BUGTRAQ)
http://packetstormsecurity.com/files/155890/Slackware-Security-Advisory-Slackware-14.2-kernel-Updates.html (MISC)
[debian-lts-announce] 20200118 [SECURITY] [DLA 2068-1] linux security update (MLIST)
USN-4254-1 (UBUNTU)
USN-4254-2 (UBUNTU)
USN-4258-1 (UBUNTU)
USN-4287-1 (UBUNTU)
USN-4287-2 (UBUNTU)
[debian-lts-announce] 20200302 [SECURITY] [DLA 2114-1] linux-4.9 security update (MLIST)
USN-4284-1 (UBUNTU)
FEDORA-2019-021c968423 ()
FEDORA-2019-34a75d7e61 ()
CVE: CVE-2019-19052
CVE: CVE-2019-19052
Id:
CVE-2019-19052
Reference:
http://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2019-19052
Comment
: A memory leak in the gs_can_open() function in drivers/net/can/usb/gs_usb.c in the Linux kernel before 5.3.11 allows attackers to cause a denial of service (memory consumption) by triggering usb_submit_urb() failures, aka CID-fb5be6a7b486.
CVSSv2 Score:
7.8
Access vector:
NETWORK
Access complexity:
LOW
Authentication:
NONE
Confidentiality impact:
NONE
Integrity impact:
NONE
Availability impact:
COMPLETE
CVSSv2 Vector:
AV:N/AC:L/Au:N/C:N/I:N/A:C
CVSSv3 Score:
7.5
Attack vector:
NETWORK
Attack complexity:
LOW
Privileges required:
NONE
User interaction:
NONE
Scope:
UNCHANGED
Confidentiality impact:
NONE
Integrity impact:
NONE
Availability impact:
HIGH
CVSSv3 Vector:
CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:H
CWE:
401 (Improper Release of Memory Before Removing Last Reference ('Memory Leak'))
References:
https://cdn.kernel.org/pub/linux/kernel/v5.x/ChangeLog-5.3.11 (MISC)
https://github.com/torvalds/linux/commit/fb5be6a7b4863ecc44963bb80ca614584b6c7817 (MISC)
https://security.netapp.com/advisory/ntap-20191205-0001/ (CONFIRM)
openSUSE-SU-2019:2675 (SUSE)
USN-4228-1 (UBUNTU)
USN-4227-1 (UBUNTU)
USN-4225-1 (UBUNTU)
USN-4228-2 (UBUNTU)
USN-4226-1 (UBUNTU)
USN-4227-2 (UBUNTU)
[debian-lts-announce] 20200118 [SECURITY] [DLA 2068-1] linux security update (MLIST)
USN-4225-2 (UBUNTU)
[debian-lts-announce] 20200302 [SECURITY] [DLA 2114-1] linux-4.9 security update (MLIST)
https://www.oracle.com/security-alerts/cpuApr2021.html (MISC)
CVE: CVE-2019-19074
CVE: CVE-2019-19074
Id:
CVE-2019-19074
Reference:
http://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2019-19074
Comment
: A memory leak in the ath9k_wmi_cmd() function in drivers/net/wireless/ath/ath9k/wmi.c in the Linux kernel through 5.3.11 allows attackers to cause a denial of service (memory consumption), aka CID-728c1e2a05e4.
CVSSv2 Score:
7.8
Access vector:
NETWORK
Access complexity:
LOW
Authentication:
NONE
Confidentiality impact:
NONE
Integrity impact:
NONE
Availability impact:
COMPLETE
CVSSv2 Vector:
AV:N/AC:L/Au:N/C:N/I:N/A:C
CVSSv3 Score:
7.5
Attack vector:
NETWORK
Attack complexity:
LOW
Privileges required:
NONE
User interaction:
NONE
Scope:
UNCHANGED
Confidentiality impact:
NONE
Integrity impact:
NONE
Availability impact:
HIGH
CVSSv3 Vector:
CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:H
CWE:
401 (Improper Release of Memory Before Removing Last Reference ('Memory Leak'))
References:
https://github.com/torvalds/linux/commit/728c1e2a05e4b5fc52fab3421dce772a806612a2 (MISC)
https://security.netapp.com/advisory/ntap-20191205-0001/ (CONFIRM)
openSUSE-SU-2019:2675 (SUSE)
USN-4527-1 (UBUNTU)
USN-4526-1 (UBUNTU)
[debian-lts-announce] 20201031 [SECURITY] [DLA 2420-2] linux regression update (MLIST)
[debian-lts-announce] 20201030 [SECURITY] [DLA 2420-1] linux security update (MLIST)
https://www.oracle.com/security-alerts/cpuApr2021.html (MISC)
FEDORA-2019-021c968423 ()
FEDORA-2019-34a75d7e61 ()
CVE: CVE-2019-19073
CVE: CVE-2019-19073
Id:
CVE-2019-19073
Reference:
http://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2019-19073
Comment
: Memory leaks in drivers/net/wireless/ath/ath9k/htc_hst.c in the Linux kernel through 5.3.11 allow attackers to cause a denial of service (memory consumption) by triggering wait_for_completion_timeout() failures. This affects the htc_config_pipe_credits() function, the htc_setup_complete() function, and the htc_connect_service() function, aka CID-853acf7caf10.
CVSSv2 Score:
2.1
Access vector:
LOCAL
Access complexity:
LOW
Authentication:
NONE
Confidentiality impact:
NONE
Integrity impact:
NONE
Availability impact:
PARTIAL
CVSSv2 Vector:
AV:L/AC:L/Au:N/C:N/I:N/A:P
CVSSv3 Score:
4
Attack vector:
LOCAL
Attack complexity:
LOW
Privileges required:
NONE
User interaction:
NONE
Scope:
UNCHANGED
Confidentiality impact:
NONE
Integrity impact:
NONE
Availability impact:
LOW
CVSSv3 Vector:
CVSS:3.1/AV:L/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:L
CWE:
401 (Improper Release of Memory Before Removing Last Reference ('Memory Leak'))
References:
https://github.com/torvalds/linux/commit/853acf7caf10b828102d92d05b5c101666a6142b (MISC)
https://security.netapp.com/advisory/ntap-20191205-0001/ (CONFIRM)
openSUSE-SU-2019:2675 (SUSE)
USN-4527-1 (UBUNTU)
USN-4526-1 (UBUNTU)
[debian-lts-announce] 20201031 [SECURITY] [DLA 2420-2] linux regression update (MLIST)
[debian-lts-announce] 20201030 [SECURITY] [DLA 2420-1] linux security update (MLIST)
https://www.oracle.com/security-alerts/cpuApr2021.html (MISC)
FEDORA-2019-021c968423 ()
FEDORA-2019-34a75d7e61 ()
Content available only for registered users!
ovaldb@altx-soft.com