First published: Wed Sep 04 2019(Updated: )
An issue was discovered in the Linux kernel before 5.2.3. An out of bounds access exists in the function hclge_tm_schd_mode_vnet_base_cfg in the file drivers/net/ethernet/hisilicon/hns3/hns3pf/hclge_tm.c.
Credit: cve@mitre.org
Affected Software | Affected Version | How to fix |
---|---|---|
redhat/kernel-rt | <0:4.18.0-240.rt7.54.el8 | 0:4.18.0-240.rt7.54.el8 |
redhat/kernel | <0:4.18.0-240.el8 | 0:4.18.0-240.el8 |
Linux Kernel | >=4.14<4.14.135 | |
Linux Kernel | >=4.15<4.19.61 | |
Linux Kernel | >=4.20<5.1.20 | |
Linux Kernel | >=5.2<5.2.3 | |
Ubuntu Linux | =18.04 | |
Ubuntu Linux | =19.04 | |
debian/linux | 5.10.223-1 5.10.226-1 6.1.123-1 6.1.128-1 6.12.12-1 6.12.15-1 | |
Ubuntu | =18.04 | |
Ubuntu | =19.04 |
Blacklisting the affected HCLGE driver module until a patch is available can be done using the blacklist mechanism. This will ensure the driver is not loaded at boot time. For instructions on how to black list a kernel module, please read: https://access.redhat.com/solutions/41278.
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
CVE-2019-15925 has been classified as a medium severity vulnerability.
To fix CVE-2019-15925, you should upgrade your Linux kernel to versions 4.18.0-240.rt7.54.el8 or 4.18.0-240.el8 or later.
CVE-2019-15925 affects various versions of the Linux kernel including versions between 4.14 and 5.2.3.
CVE-2019-15925 is an out of bounds access vulnerability in the Linux kernel.
CVE-2019-15925 impacts Linux distributions that use affected versions of the Linux kernel, such as Red Hat and Ubuntu.