First published: Wed Aug 21 2019(Updated: )
Linux Kernel is vulnerable to a heap-based buffer overflow, caused by improper bounds checking by mwifiex_update_vs_ie() function of Marvell Wifi Driver. By sending a specially-crafted packet, a local attacker could overflow a buffer and execute arbitrary code on the system or cause the system to crash.
Credit: secalert@redhat.com secalert@redhat.com
Affected Software | Affected Version | How to fix |
---|---|---|
redhat/kernel-rt | <0:3.10.0-1062.12.1.rt56.1042.el7 | 0:3.10.0-1062.12.1.rt56.1042.el7 |
redhat/kernel-alt | <0:4.14.0-115.17.1.el7a | 0:4.14.0-115.17.1.el7a |
redhat/kernel | <0:3.10.0-1062.12.1.el7 | 0:3.10.0-1062.12.1.el7 |
redhat/kernel | <0:3.10.0-327.85.1.el7 | 0:3.10.0-327.85.1.el7 |
redhat/kernel | <0:3.10.0-514.73.1.el7 | 0:3.10.0-514.73.1.el7 |
redhat/kernel | <0:3.10.0-693.65.1.el7 | 0:3.10.0-693.65.1.el7 |
redhat/kernel | <0:3.10.0-862.51.1.el7 | 0:3.10.0-862.51.1.el7 |
redhat/kernel | <0:3.10.0-957.46.1.el7 | 0:3.10.0-957.46.1.el7 |
redhat/kernel-rt | <0:4.18.0-147.5.1.rt24.98.el8_1 | 0:4.18.0-147.5.1.rt24.98.el8_1 |
redhat/kernel | <0:4.18.0-147.5.1.el8_1 | 0:4.18.0-147.5.1.el8_1 |
redhat/kernel | <0:4.18.0-80.15.1.el8_0 | 0:4.18.0-80.15.1.el8_0 |
redhat/kernel-rt | <1:3.10.0-693.65.1.rt56.663.el6 | 1:3.10.0-693.65.1.rt56.663.el6 |
IBM Data Risk Manager | <=2.0.6 | |
Linux Linux kernel | >=3.6<3.16.74 | |
Linux Linux kernel | >=3.17<4.4.194 | |
Linux Linux kernel | >=4.5<4.9.194 | |
Linux Linux kernel | >=4.10<4.14.146 | |
Linux Linux kernel | >=4.15<4.19.75 | |
Linux Linux kernel | >=4.20<5.2.17 | |
Redhat Virtualization | =4.0 | |
Redhat Enterprise Linux | =5.0 | |
Redhat Enterprise Linux | =6.0 | |
Redhat Enterprise Linux | =6.4 | |
Redhat Enterprise Linux | =7.0 | |
Redhat Enterprise Linux | =7.6 | |
Redhat Enterprise Linux | =8.0 | |
Redhat Enterprise Linux Compute Node Eus | =7.6 | |
Redhat Enterprise Linux Eus | =7.6 | |
Redhat Enterprise Linux Eus | =7.7 | |
Redhat Enterprise Linux Eus | =8.1 | |
Redhat Enterprise Linux Eus | =8.2 | |
Redhat Enterprise Linux Eus | =8.4 | |
Redhat Enterprise Linux For Power Big Endian Eus | =7.6_ppc64 | |
Redhat Enterprise Linux For Real Time | =7 | |
Redhat Enterprise Linux For Real Time | =8 | |
Redhat Enterprise Linux For Real Time For Nfv | =7 | |
Redhat Enterprise Linux For Real Time For Nfv | =8 | |
Redhat Enterprise Linux For Real Time For Nfv Tus | =8.2 | |
Redhat Enterprise Linux For Real Time For Nfv Tus | =8.4 | |
Redhat Enterprise Linux For Real Time Tus | =8.2 | |
Redhat Enterprise Linux For Real Time Tus | =8.4 | |
Redhat Enterprise Linux Server | =7.6 | |
Redhat Enterprise Linux Server | =8.0 | |
Redhat Enterprise Linux Server Aus | =7.2 | |
Redhat Enterprise Linux Server Aus | =7.3 | |
Redhat Enterprise Linux Server Aus | =7.6 | |
Redhat Enterprise Linux Server Aus | =8.2 | |
Redhat Enterprise Linux Server Aus | =8.4 | |
Redhat Enterprise Linux Server Tus | =7.3 | |
Redhat Enterprise Linux Server Tus | =7.6 | |
Redhat Enterprise Linux Server Tus | =8.2 | |
Redhat Enterprise Linux Server Tus | =8.4 | |
Redhat Enterprise Linux Tus | =7.7 | |
Redhat Messaging Realtime Grid | =2.0 | |
Redhat Virtualization | =4.2 | |
Debian Debian Linux | =8.0 | |
Fedoraproject Fedora | =29 | |
Fedoraproject Fedora | =30 | |
Netapp Data Availability Services | ||
Netapp Hci Management Node | ||
NetApp Service Processor | ||
Netapp Solidfire | ||
Netapp Steelstore Cloud Integrated Storage | ||
Netapp A700s Firmware | ||
Netapp A700s | ||
Netapp A320 Firmware | ||
Netapp A320 | ||
Netapp C190 Firmware | ||
Netapp C190 | ||
Netapp A220 Firmware | ||
Netapp A220 | ||
Netapp Fas2720 Firmware | ||
Netapp Fas2720 | ||
Netapp Fas2750 Firmware | ||
Netapp Fas2750 | ||
Netapp A800 Firmware | ||
Netapp A800 | ||
Apple macOS Ventura | ||
Apple macOS Big Sur | ||
Apple macOS Big Sur | ||
Apple macOS Ventura | ||
Apple macOS Big Sur | ||
Apple macOS Monterey | ||
Netapp H300e Firmware | ||
Netapp H300e | ||
Netapp H500e Firmware | ||
Netapp H500e | ||
Netapp H700e Firmware | ||
Netapp H700e | ||
Apple macOS Monterey | ||
Apple macOS Monterey | ||
Netapp H610s Firmware | ||
Netapp H610s | ||
Canonical Ubuntu Linux | =14.04 | |
Canonical Ubuntu Linux | =16.04 | |
Canonical Ubuntu Linux | =18.04 | |
Canonical Ubuntu Linux | =19.04 | |
openSUSE Leap | =15.0 | |
openSUSE Leap | =15.1 | |
All of | ||
Netapp A700s Firmware | ||
Netapp A700s | ||
All of | ||
Netapp A320 Firmware | ||
Netapp A320 | ||
All of | ||
Netapp C190 Firmware | ||
Netapp C190 | ||
All of | ||
Netapp A220 Firmware | ||
Netapp A220 | ||
All of | ||
Netapp Fas2720 Firmware | ||
Netapp Fas2720 | ||
All of | ||
Netapp Fas2750 Firmware | ||
Netapp Fas2750 | ||
All of | ||
Netapp A800 Firmware | ||
Netapp A800 | ||
All of | ||
Apple macOS Ventura | ||
Apple macOS Big Sur | ||
All of | ||
Apple macOS Big Sur | ||
Apple macOS Ventura | ||
All of | ||
Apple macOS Big Sur | ||
Apple macOS Monterey | ||
All of | ||
Netapp H300e Firmware | ||
Netapp H300e | ||
All of | ||
Netapp H500e Firmware | ||
Netapp H500e | ||
All of | ||
Netapp H700e Firmware | ||
Netapp H700e | ||
All of | ||
Apple macOS Monterey | ||
Apple macOS Monterey | ||
All of | ||
Netapp H610s Firmware | ||
Netapp H610s | ||
ubuntu/linux | <4.15.0-66.75 | 4.15.0-66.75 |
ubuntu/linux | <5.0.0-32.34 | 5.0.0-32.34 |
ubuntu/linux | <5.3 | 5.3 |
ubuntu/linux | <4.4.0-166.195 | 4.4.0-166.195 |
ubuntu/linux-aws | <4.15.0-1052.54 | 4.15.0-1052.54 |
ubuntu/linux-aws | <5.0.0-1019.21 | 5.0.0-1019.21 |
ubuntu/linux-aws | <4.4.0-1056.60 | 4.4.0-1056.60 |
ubuntu/linux-aws | <5.3 | 5.3 |
ubuntu/linux-aws | <4.4.0-1096.107 | 4.4.0-1096.107 |
ubuntu/linux-aws-5.0 | <5.3 | 5.3 |
ubuntu/linux-aws-hwe | <5.3 | 5.3 |
ubuntu/linux-aws-hwe | <4.15.0-1052.54~16.04.1 | 4.15.0-1052.54~16.04.1 |
ubuntu/linux-azure | <5.0.0-1023.24~18.04.1 | 5.0.0-1023.24~18.04.1 |
ubuntu/linux-azure | <5.0.0-1023.24 | 5.0.0-1023.24 |
ubuntu/linux-azure | <4.15.0-1061.66~14.04.1 | 4.15.0-1061.66~14.04.1 |
ubuntu/linux-azure | <5.3 | 5.3 |
ubuntu/linux-azure | <4.15.0-1061.66 | 4.15.0-1061.66 |
ubuntu/linux-azure-5.3 | <5.3 | 5.3 |
ubuntu/linux-azure-edge | <5.0.0-1023.24~18.04.1 | 5.0.0-1023.24~18.04.1 |
ubuntu/linux-azure-edge | <5.3 | 5.3 |
ubuntu/linux-azure-edge | <4.15.0-1061.66 | 4.15.0-1061.66 |
ubuntu/linux-gcp | <5.0.0-1021.21~18.04.1 | 5.0.0-1021.21~18.04.1 |
ubuntu/linux-gcp | <5.0.0-1021.21 | 5.0.0-1021.21 |
ubuntu/linux-gcp | <5.3 | 5.3 |
ubuntu/linux-gcp | <4.15.0-1047.50 | 4.15.0-1047.50 |
ubuntu/linux-gcp-5.3 | <5.3 | 5.3 |
ubuntu/linux-gcp-edge | <5.0.0-1021.21~18.04.1 | 5.0.0-1021.21~18.04.1 |
ubuntu/linux-gcp-edge | <5.3 | 5.3 |
ubuntu/linux-gke-4.15 | <4.15.0-1046.49 | 4.15.0-1046.49 |
ubuntu/linux-gke-4.15 | <5.3 | 5.3 |
ubuntu/linux-gke-5.0 | <5.0.0-1023.23~18.04.2 | 5.0.0-1023.23~18.04.2 |
ubuntu/linux-gke-5.0 | <5.3 | 5.3 |
ubuntu/linux-gke-5.3 | <5.3 | 5.3 |
ubuntu/linux-hwe | <5.0.0-32.34~18.04.2 | 5.0.0-32.34~18.04.2 |
ubuntu/linux-hwe | <5.3 | 5.3 |
ubuntu/linux-hwe | <4.15.0-66.75~16.04.1 | 4.15.0-66.75~16.04.1 |
ubuntu/linux-hwe-edge | <5.3 | 5.3 |
ubuntu/linux-hwe-edge | <4.15.0-66.75~16.04.1 | 4.15.0-66.75~16.04.1 |
ubuntu/linux-kvm | <4.15.0-1048.48 | 4.15.0-1048.48 |
ubuntu/linux-kvm | <5.0.0-1020.21 | 5.0.0-1020.21 |
ubuntu/linux-kvm | <5.3 | 5.3 |
ubuntu/linux-kvm | <4.4.0-1060.67 | 4.4.0-1060.67 |
ubuntu/linux-lts-trusty | <5.3 | 5.3 |
ubuntu/linux-lts-xenial | <4.4.0-166.195~14.04.1 | 4.4.0-166.195~14.04.1 |
ubuntu/linux-lts-xenial | <5.3 | 5.3 |
ubuntu/linux-oem | <4.15.0-1059.68 | 4.15.0-1059.68 |
ubuntu/linux-oem | <4.15.0-1059.68 | 4.15.0-1059.68 |
ubuntu/linux-oem | <5.3 | 5.3 |
ubuntu/linux-oem-5.6 | <5.3 | 5.3 |
ubuntu/linux-oem-osp1 | <5.0.0-1025.28 | 5.0.0-1025.28 |
ubuntu/linux-oem-osp1 | <5.0.0-1025.28 | 5.0.0-1025.28 |
ubuntu/linux-oem-osp1 | <5.3 | 5.3 |
ubuntu/linux-oracle | <4.15.0-1027.30 | 4.15.0-1027.30 |
ubuntu/linux-oracle | <5.3 | 5.3 |
ubuntu/linux-oracle | <4.15.0-1027.30~16.04.1 | 4.15.0-1027.30~16.04.1 |
ubuntu/linux-oracle-5.0 | <5.3 | 5.3 |
ubuntu/linux-oracle-5.3 | <5.3 | 5.3 |
ubuntu/linux-raspi2 | <4.15.0-1049.53 | 4.15.0-1049.53 |
ubuntu/linux-raspi2 | <5.0.0-1020.20 | 5.0.0-1020.20 |
ubuntu/linux-raspi2 | <5.3 | 5.3 |
ubuntu/linux-raspi2 | <4.4.0-1124.133 | 4.4.0-1124.133 |
ubuntu/linux-raspi2-5.3 | <5.3 | 5.3 |
ubuntu/linux-snapdragon | <4.15.0-1066.73 | 4.15.0-1066.73 |
ubuntu/linux-snapdragon | <5.0.0-1024.25 | 5.0.0-1024.25 |
ubuntu/linux-snapdragon | <5.3 | 5.3 |
ubuntu/linux-snapdragon | <4.4.0-1128.136 | 4.4.0-1128.136 |
debian/linux | 4.19.249-2 4.19.304-1 5.10.209-2 5.10.205-2 6.1.76-1 6.1.85-1 6.6.15-2 6.7.12-1 |
At this time there is no mitigation to the flaw, if you are able to disable wireless and your system is able to work this will be a temporary mitigation until a kernel update is available for installation.
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
(Appears in the following advisories)