Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

debian логотип

CVE-2019-18814

Опубликовано: 07 нояб. 2019
Источник: debian

Описание

An issue was discovered in the Linux kernel through 5.3.9. There is a use-after-free when aa_label_parse() fails in aa_audit_rule_init() in security/apparmor/audit.c.

Пакеты

ПакетСтатусВерсия исправленияРелизТип
linuxfixed5.7.6-1package
linuxfixed4.19.131-1busterpackage
linuxnot-affectedstretchpackage
linuxnot-affectedjessiepackage

Примечания

  • https://lore.kernel.org/patchwork/patch/1142523/

Связанные уязвимости

CVSS3: 9.8
ubuntu
около 6 лет назад

An issue was discovered in the Linux kernel through 5.3.9. There is a use-after-free when aa_label_parse() fails in aa_audit_rule_init() in security/apparmor/audit.c.

CVSS3: 7.8
redhat
больше 6 лет назад

An issue was discovered in the Linux kernel through 5.3.9. There is a use-after-free when aa_label_parse() fails in aa_audit_rule_init() in security/apparmor/audit.c.

CVSS3: 9.8
nvd
около 6 лет назад

An issue was discovered in the Linux kernel through 5.3.9. There is a use-after-free when aa_label_parse() fails in aa_audit_rule_init() in security/apparmor/audit.c.

github
больше 3 лет назад

An issue was discovered in the Linux kernel through 5.3.9. There is a use-after-free when aa_label_parse() fails in aa_audit_rule_init() in security/apparmor/audit.c.

CVSS3: 9.8
fstec
больше 6 лет назад

Уязвимость функции aa_audit_rule_init() (security/apparmor/audit.c) ядра операционной системы Linux, позволяющая нарушителю выполнить произвольный код