Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

debian логотип

CVE-2019-9213

Опубликовано: 05 мар. 2019
Источник: debian
EPSS Низкий

Описание

In the Linux kernel before 4.20.14, expand_downwards in mm/mmap.c lacks a check for the mmap minimum address, which makes it easier for attackers to exploit kernel NULL pointer dereferences on non-SMAP platforms. This is related to a capability check for the wrong task.

Пакеты

ПакетСтатусВерсия исправленияРелизТип
linuxfixed4.19.28-1package
linuxfixed4.9.168-1stretchpackage

Примечания

  • Fixed by: https://git.kernel.org/linus/0a1d52994d440e21def1c2174932410b4f2a98a1 (5.0)

  • https://bugs.chromium.org/p/project-zero/issues/detail?id=1792

EPSS

Процентиль: 90%
0.06272
Низкий

Связанные уязвимости

CVSS3: 5.5
ubuntu
больше 6 лет назад

In the Linux kernel before 4.20.14, expand_downwards in mm/mmap.c lacks a check for the mmap minimum address, which makes it easier for attackers to exploit kernel NULL pointer dereferences on non-SMAP platforms. This is related to a capability check for the wrong task.

CVSS3: 5.5
redhat
больше 6 лет назад

In the Linux kernel before 4.20.14, expand_downwards in mm/mmap.c lacks a check for the mmap minimum address, which makes it easier for attackers to exploit kernel NULL pointer dereferences on non-SMAP platforms. This is related to a capability check for the wrong task.

CVSS3: 5.5
nvd
больше 6 лет назад

In the Linux kernel before 4.20.14, expand_downwards in mm/mmap.c lacks a check for the mmap minimum address, which makes it easier for attackers to exploit kernel NULL pointer dereferences on non-SMAP platforms. This is related to a capability check for the wrong task.

suse-cvrf
около 6 лет назад

Security update for the Linux Kernel (Live Patch 23 for SLE 12 SP3)

CVSS3: 5.5
github
около 3 лет назад

In the Linux kernel before 4.20.14, expand_downwards in mm/mmap.c lacks a check for the mmap minimum address, which makes it easier for attackers to exploit kernel NULL pointer dereferences on non-SMAP platforms. This is related to a capability check for the wrong task.

EPSS

Процентиль: 90%
0.06272
Низкий