PT-2019-4192 · Linux+5 · Linux Kernel+5

Dhananjay Arunesh

+2

·

Publicado

2019-11-22

·

Atualizado

2023-02-12

·

CVE-2019-14901

CVSS v2.0

10

Crítica

VetorAV:N/AC:L/Au:N/C:C/I:C/A:C
Name of the Vulnerable Software and Affected Versions Linux kernel versions 3.x.x and 4.x.x before 4.18.0
Description The issue is related to a heap overflow flaw in the Marvell WiFi chip driver of the Linux kernel. This flaw allows a remote attacker to cause a system crash, resulting in a denial of service, or execute arbitrary code with root permissions, affecting the confidentiality and integrity of files on the system.
Recommendations For Linux kernel versions 3.x.x and 4.x.x before 4.18.0, update to version 4.18.0 or later to resolve the issue. As a temporary workaround, consider restricting access to the Marvell WiFi chip driver to minimize the risk of exploitation.

Exploit

Correção

DoS

Resource Exhaustion

Memory Corruption

Heap Based Buffer Overflow

Encontrou algum problema na descrição? Tem algo a acrescentar? Fique à vontade para nos escrever 👾

Enumeração de Fraquezas

Identificadores relacionados

ALT-PU-2020-1026
ALT-PU-2020-1027
ALT-PU-2020-1042
ALT-PU-2020-1043
ALT-PU-2020-1046
ALT-PU-2020-1189
ALT-PU-2020-1421
ALT-PU-2020-1450
ALT-PU-2020-1714
ALT-PU-2020-2410
ALT-PU-2020-2433
BDU:2019-04788
CESA-2020_0328
CESA-2020_0339
CESA-2020_0374
CESA-2020_0375
CVE-2019-14901
DLA-2068-1
DLA-2114-1
OPENSUSE-SU-2019:2675-1
OPENSUSE-SU-2019_2675-1
RHSA-2020:0204
RHSA-2020:0328
RHSA-2020:0339
RHSA-2020:0374
RHSA-2020:0375
RHSA-2020:1493
RHSA-2020_0328
RHSA-2020_0339
RHSA-2020_0374
RHSA-2020_0375
SUSE-SU-2019:3289-1
SUSE-SU-2019:3316-1
SUSE-SU-2019:3317-1
SUSE-SU-2019:3372-1
SUSE-SU-2019:3381-1
SUSE-SU-2019:3389-1
SUSE-SU-2020:0093-1
SUSE-SU-2020:0599-1
SUSE-SU-2020:0613-1
SUSE-SU-2020:1255-1
SUSE-SU-2020:2491-1
SUSE-SU-2020:2492-1
SUSE-SU-2020:2497-1
SUSE-SU-2020:2505-1
SUSE-SU-2020:2506-1
SUSE-SU-2020:2526-1
USN-4225-1
USN-4225-2
USN-4226-1
USN-4227-1
USN-4227-2
USN-4228-1
USN-4228-2

Produtos afetados

Alt Linux
Centos
Linux Kernel
Red Hat
Suse
Ubuntu