vulnerability

Ubuntu: (Multiple Advisories) (CVE-2019-19767): Linux kernel vulnerabilities

Severity
4
CVSS
(AV:N/AC:M/Au:N/C:N/I:N/A:P)
Published
Dec 12, 2019
Added
Jan 29, 2020
Modified
Mar 22, 2023

Description

The Linux kernel before 5.4.2 mishandles ext4_expand_extra_isize, as demonstrated by use-after-free errors in __ext4_expand_extra_isize and ext4_xattr_set_entry, related to fs/ext4/inode.c and fs/ext4/super.c, aka CID-4ea99936a163.

Solution(s)

ubuntu-upgrade-linux-image-4-15-0-1033-oracleubuntu-upgrade-linux-image-4-15-0-1052-gkeubuntu-upgrade-linux-image-4-15-0-1053-kvmubuntu-upgrade-linux-image-4-15-0-1055-gcpubuntu-upgrade-linux-image-4-15-0-1055-raspi2ubuntu-upgrade-linux-image-4-15-0-1060-awsubuntu-upgrade-linux-image-4-15-0-1069-azureubuntu-upgrade-linux-image-4-15-0-1071-azureubuntu-upgrade-linux-image-4-15-0-1072-snapdragonubuntu-upgrade-linux-image-4-15-0-88-genericubuntu-upgrade-linux-image-4-15-0-88-generic-lpaeubuntu-upgrade-linux-image-4-15-0-88-lowlatencyubuntu-upgrade-linux-image-5-0-0-1010-oracleubuntu-upgrade-linux-image-5-0-0-1024-awsubuntu-upgrade-linux-image-5-0-0-1029-gcpubuntu-upgrade-linux-image-5-0-0-1029-gkeubuntu-upgrade-linux-image-5-3-0-1009-oracleubuntu-upgrade-linux-image-5-3-0-1010-kvmubuntu-upgrade-linux-image-5-3-0-1011-awsubuntu-upgrade-linux-image-5-3-0-1012-gcpubuntu-upgrade-linux-image-5-3-0-1013-azureubuntu-upgrade-linux-image-5-3-0-1018-raspi2ubuntu-upgrade-linux-image-5-3-0-40-genericubuntu-upgrade-linux-image-5-3-0-40-generic-lpaeubuntu-upgrade-linux-image-5-3-0-40-lowlatencyubuntu-upgrade-linux-image-5-3-0-40-snapdragonubuntu-upgrade-linux-image-awsubuntu-upgrade-linux-image-aws-edgeubuntu-upgrade-linux-image-aws-hweubuntu-upgrade-linux-image-aws-lts-18-04ubuntu-upgrade-linux-image-azureubuntu-upgrade-linux-image-azure-edgeubuntu-upgrade-linux-image-gcpubuntu-upgrade-linux-image-gcp-edgeubuntu-upgrade-linux-image-genericubuntu-upgrade-linux-image-generic-hwe-16-04ubuntu-upgrade-linux-image-generic-hwe-18-04ubuntu-upgrade-linux-image-generic-lpaeubuntu-upgrade-linux-image-generic-lpae-hwe-16-04ubuntu-upgrade-linux-image-generic-lpae-hwe-18-04ubuntu-upgrade-linux-image-gkeubuntu-upgrade-linux-image-gke-4-15ubuntu-upgrade-linux-image-gke-5-0ubuntu-upgrade-linux-image-kvmubuntu-upgrade-linux-image-lowlatencyubuntu-upgrade-linux-image-lowlatency-hwe-16-04ubuntu-upgrade-linux-image-lowlatency-hwe-18-04ubuntu-upgrade-linux-image-oemubuntu-upgrade-linux-image-oracleubuntu-upgrade-linux-image-oracle-edgeubuntu-upgrade-linux-image-oracle-lts-18-04ubuntu-upgrade-linux-image-raspi2ubuntu-upgrade-linux-image-raspi2-hwe-18-04ubuntu-upgrade-linux-image-snapdragonubuntu-upgrade-linux-image-snapdragon-hwe-18-04ubuntu-upgrade-linux-image-virtualubuntu-upgrade-linux-image-virtual-hwe-16-04ubuntu-upgrade-linux-image-virtual-hwe-18-04
Title
NEW

Explore Exposure Command

Confidently identify and prioritize exposures from endpoint to cloud with full attack surface visibility and threat-aware risk context.