Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

nvd логотип

CVE-2019-13233

Опубликовано: 04 июл. 2019
Источник: nvd
CVSS3: 7
CVSS2: 4.4
EPSS Низкий

Описание

In arch/x86/lib/insn-eval.c in the Linux kernel before 5.1.9, there is a use-after-free for access to an LDT entry because of a race condition between modify_ldt() and a #BR exception for an MPX bounds violation.

Уязвимые конфигурации

Конфигурация 1
cpe:2.3:o:linux:linux_kernel:*:*:*:*:*:*:*:*
Версия до 5.1.9 (исключая)

EPSS

Процентиль: 22%
0.00068
Низкий

7 High

CVSS3

4.4 Medium

CVSS2

Дефекты

CWE-362

Связанные уязвимости

CVSS3: 7
ubuntu
почти 6 лет назад

In arch/x86/lib/insn-eval.c in the Linux kernel before 5.1.9, there is a use-after-free for access to an LDT entry because of a race condition between modify_ldt() and a #BR exception for an MPX bounds violation.

CVSS3: 5.1
redhat
почти 6 лет назад

In arch/x86/lib/insn-eval.c in the Linux kernel before 5.1.9, there is a use-after-free for access to an LDT entry because of a race condition between modify_ldt() and a #BR exception for an MPX bounds violation.

CVSS3: 7
debian
почти 6 лет назад

In arch/x86/lib/insn-eval.c in the Linux kernel before 5.1.9, there is ...

suse-cvrf
почти 6 лет назад

Security update for the Linux Kernel (Live Patch 0 for SLE 15 SP1)

CVSS3: 7
github
около 3 лет назад

In arch/x86/lib/insn-eval.c in the Linux kernel before 5.1.9, there is a use-after-free for access to an LDT entry because of a race condition between modify_ldt() and a #BR exception for an MPX bounds violation.

EPSS

Процентиль: 22%
0.00068
Низкий

7 High

CVSS3

4.4 Medium

CVSS2

Дефекты

CWE-362