vulnerability
SUSE: CVE-2019-19447: SUSE Linux Security Advisory
Severity | CVSS | Published | Added | Modified |
---|---|---|---|---|
7 | (AV:N/AC:M/Au:N/C:P/I:P/A:P) | Dec 8, 2019 | Jan 15, 2020 | Feb 4, 2022 |
Severity
7
CVSS
(AV:N/AC:M/Au:N/C:P/I:P/A:P)
Published
Dec 8, 2019
Added
Jan 15, 2020
Modified
Feb 4, 2022
Description
In the Linux kernel 5.0.21, mounting a crafted ext4 filesystem image, performing some operations, and unmounting can lead to a use-after-free in ext4_put_super in fs/ext4/super.c, related to dump_orphan_list in fs/ext4/super.c.
Solution(s)
suse-upgrade-kernel-defaultsuse-upgrade-kernel-default-extrasuse-upgrade-kernel-docssuse-upgrade-kernel-obs-build
References
- SUSE-SUSE-SU-2020:0093-1
- SUSE-SUSE-SU-2020:0511-1
- SUSE-SUSE-SU-2020:0559-1
- SUSE-SUSE-SU-2020:0560-1
- SUSE-SUSE-SU-2020:0580-1
- SUSE-SUSE-SU-2020:0584-1
- SUSE-SUSE-SU-2020:0599-1
- SUSE-SUSE-SU-2020:0613-1
- SUSE-SUSE-SU-2020:1255-1
- SUSE-SUSE-SU-2020:1275-1
- SUSE-SUSE-SU-2020:1663-1
- SUSE-SUSE-SU-2020:2491-1
- SUSE-SUSE-SU-2020:2492-1
- SUSE-SUSE-SU-2020:2497-1
- SUSE-SUSE-SU-2020:2498-1
- SUSE-SUSE-SU-2020:2505-1
- SUSE-SUSE-SU-2020:2506-1
- SUSE-SUSE-SU-2020:2513-1
- SUSE-SUSE-SU-2020:2526-1
- NVD-CVE-2019-19447

NEW
Explore Exposure Command
Confidently identify and prioritize exposures from endpoint to cloud with full attack surface visibility and threat-aware risk context.