CVE-2019-25045: Use After Free
Published Jun 7, 2021
·Updated
An issue was discovered in the Linux kernel before 5.0.19. The XFRM subsystem has a use-after-free, related to an xfrmstatefini panic, aka CID-dbb2483b2a46.
Affected Software
41 affected components
Linux Linux kernel<5.0.19
NetApp Solidfire Baseboard Management Controller Firmware
NetApp Solidfire Baseboard Management Controller
NetApp Cloud Backup
NetApp Solidfire \& Hci Management Node
NetApp H500s Firmware
NetApp H500s
NetApp H700s Firmware
NetApp H700s
NetApp H300e Firmware
NetApp H300e
NetApp H500e Firmware
NetApp H500e
NetApp H700e Firmware
NetApp H700e
NetApp H410s Firmware
NetApp H410s
NetApp H410c Firmware
NetApp H410c
NetApp H610c Firmware
NetApp H610c
NetApp H610s Firmware
NetApp H610s
NetApp H615c Firmware
NetApp H615c
NetApp H300s Firmware
NetApp H300s
NetApp Fas 8300 Firmware
NetApp Fas 8300
NetApp Fas 8700 Firmware
NetApp Fas 8700
NetApp Aff 8300 Firmware
NetApp Aff 8300
NetApp Aff 8700 Firmware
NetApp Aff 8700
NetApp Aff A400 Firmware
NetApp Aff A400
NetApp Fabric-attached Storage A400 Firmware
NetApp Fabric-attached Storage A400
NetApp Aff A700s Firmware
NetApp AFF A700s
Remediation
Event History
Jun 7, 2021
CVE Published
via MITRE·07:19 PM
Data Sourced
via MITRE·07:19 PM
Description
Frequently Asked Questions
1
What is the severity of CVE-2019-25045?
The severity of CVE-2019-25045 is high with a severity value of 7.8.
2
What is CVE-2019-25045?
CVE-2019-25045 is an issue discovered in the Linux kernel before 5.0.19 related to a use-after-free vulnerability in the XFRM subsystem.
3
Which software is affected by CVE-2019-25045?
The Linux kernel before version 5.0.19 and Netapp Solidfire Baseboard Management Controller Firmware are affected by CVE-2019-25045.
4
How can I fix CVE-2019-25045?
To fix CVE-2019-25045, update your Linux kernel to version 5.0.19 or later.
5
Where can I find more information about CVE-2019-25045?
You can find more information about CVE-2019-25045 in the references provided: [link1], [link2], [link3].