CVE-2019-11486
published 2019-04-23CVE-2019-11486: The Siemens R3964 line discipline driver in drivers/tty/n_r3964.c in the Linux kernel before 5.0.8 has multiple race conditions.
PriorityP429high7CVSS 3.1
AVLACHPRLUINSUCHIHAH
EPSS
0.37%
29.2th percentile
The Siemens R3964 line discipline driver in drivers/tty/n_r3964.c in the Linux kernel before 5.0.8 has multiple race conditions.
Affected
18 ranges
| Vendor | Product | Version range | Fixed in |
|---|---|---|---|
| debian | debian_linux | — | — |
| debian | linux | < linux 4.19.37-1 (bookworm) | linux 4.19.37-1 (bookworm) |
| linux | linux_kernel | < 3.16.66 | 3.16.66 |
| linux | linux_kernel | >= 0 < 4.19.37-1 | 4.19.37-1 |
| linux | linux_kernel | >= 0 < 4.19.37-1 | 4.19.37-1 |
| linux | linux_kernel | >= 0 < 4.19.37-1 | 4.19.37-1 |
| linux | linux_kernel | >= 0 < 4.19.37-1 | 4.19.37-1 |
| linux | linux_kernel | >= 3.17 < 3.18.139 | 3.18.139 |
| linux | linux_kernel | >= 3.19 < 4.4.179 | 4.4.179 |
| linux | linux_kernel | >= 4.10 < 4.14.112 | 4.14.112 |
| linux | linux_kernel | >= 4.15 < 4.19.35 | 4.19.35 |
| linux | linux_kernel | >= 4.20 < 5.0.8 | 5.0.8 |
| linux | linux_kernel | >= 4.5 < 4.9.169 | 4.9.169 |
| netapp | storage_replication_adapter_for_clustered_data_ontap | — | — |
| netapp | vasa_provider_for_clustered_data_ontap | — | — |
| netapp | virtual_storage_console | — | — |
| opensuse | leap | — | — |
| opensuse | leap | — | — |
CVSS provenance
nvdv3.17.0HIGHCVSS:3.1/AV:L/AC:H/PR:L/UI:N/S:U/C:H/I:H/A:H
nvdv2.06.9MEDIUMAV:L/AC:M/Au:N/C:C/I:C/A:C
osv7.0HIGH
vendor_debian7.0HIGH
vendor_redhat7.0HIGH
Stop checking back — get the weekly exploitation signal.
Every Monday: what got weaponized or added to CISA KEV in the last seven days — each CVE cross-linked to its PoC, Nuclei template, and detection rule. Free, one email a week, unsubscribe in one click.
GHSA
GHSA-fq7v-x63h-q5h9: The Siemens R3964 line discipline driver in drivers/tty/n_r3964
ghsa_unreviewed·2022-05-24
CVE-2019-11486 [MEDIUM] CWE-362 GHSA-fq7v-x63h-q5h9: The Siemens R3964 line discipline driver in drivers/tty/n_r3964
The Siemens R3964 line discipline driver in drivers/tty/n_r3964.c in the Linux kernel before 5.0.8 has multiple race conditions.
OSV
CVE-2019-11486: The Siemens R3964 line discipline driver in drivers/tty/n_r3964
osv·2019-04-23·CVSS 7.0
CVE-2019-11486 [HIGH] CVE-2019-11486: The Siemens R3964 line discipline driver in drivers/tty/n_r3964
The Siemens R3964 line discipline driver in drivers/tty/n_r3964.c in the Linux kernel before 5.0.8 has multiple race conditions.
Red Hat
kernel: multiple race conditions in Siemens R3964 line discipline driver in drivers/tty/n_r3964.c leading to denial of service
vendor_redhat·2019-04-05·CVSS 7.0
CVE-2019-11486 [HIGH] CWE-362 kernel: multiple race conditions in Siemens R3964 line discipline driver in drivers/tty/n_r3964.c leading to denial of service
kernel: multiple race conditions in Siemens R3964 line discipline driver in drivers/tty/n_r3964.c leading to denial of service
The Siemens R3964 line discipline driver in drivers/tty/n_r3964.c in the Linux kernel before 5.0.8 has multiple race conditions.
A flaw was found in the Linux kernel's Siemens r3964 adapter driver. The flaw allows an attacker, with a local account and an ability to open the serial port of a Siemens r3964 adapter, may be able to abuse this race condition for memory corruption and possibly privilege escalation.
Package: kernel (Red Hat Enterprise Linux 5) - Not affected
Package: kernel (Red Hat Enterprise Linux 6) - Not affected
Package: kernel (Red Hat Enterprise Linux 7) - Not affected
Package: kernel-alt (Red Hat Enterprise Linux 7) - Not affected
Package:
Debian
CVE-2019-11486: linux - The Siemens R3964 line discipline driver in drivers/tty/n_r3964.c in the Linux k...
vendor_debian·2019·CVSS 7.0
CVE-2019-11486 [HIGH] CVE-2019-11486: linux - The Siemens R3964 line discipline driver in drivers/tty/n_r3964.c in the Linux k...
The Siemens R3964 line discipline driver in drivers/tty/n_r3964.c in the Linux kernel before 5.0.8 has multiple race conditions.
Scope: local
bookworm: resolved (fixed in 4.19.37-1)
bullseye: resolved (fixed in 4.19.37-1)
forky: resolved (fixed in 4.19.37-1)
sid: resolved (fixed in 4.19.37-1)
trixie: resolved (fixed in 4.19.37-1)
No detection rules found.
No public exploits indexed.
Bugzilla
CVE-2019-11486 kernel: multiple race conditions in Siemens R3964 line discipline driver in drivers/tty/n_r3964.c leading to denial of service [fedora-all]
bugzilla·2019-05-02·CVSS 7.0
CVE-2019-11486 [HIGH] CVE-2019-11486 kernel: multiple race conditions in Siemens R3964 line discipline driver in drivers/tty/n_r3964.c leading to denial of service [fedora-all]
CVE-2019-11486 kernel: multiple race conditions in Siemens R3964 line discipline driver in drivers/tty/n_r3964.c leading to denial of service [fedora-all]
This is an automatically created tracking bug! It was created to ensure
that one or more security vulnerabilities are fixed in affected versions
of fedora-all.
For comments that are specific to the vulnerability please use bugs filed
against the "Security Response" product referenced in the "Blocks" field.
For more information see:
http://fedoraproject.org/wiki/Security/TrackingBugs
When submitting as an update, use the fedpkg template provided in the next
comment(s). This will include the bug IDs of this tracking bug as well as
the relevant top-level CVE bugs.
Please also mention the CVE IDs being fixed in the RPM changelog and the
Bugzilla
CVE-2019-11486 kernel: multiple race conditions in Siemens R3964 line discipline driver in drivers/tty/n_r3964.c leading to denial of service
bugzilla·2019-05-02·CVSS 7.0
CVE-2019-11486 [HIGH] CVE-2019-11486 kernel: multiple race conditions in Siemens R3964 line discipline driver in drivers/tty/n_r3964.c leading to denial of service
CVE-2019-11486 kernel: multiple race conditions in Siemens R3964 line discipline driver in drivers/tty/n_r3964.c leading to denial of service
The Siemens R3964 line discipline driver in drivers/tty/n_r3964.c in the Linux kernel before 5.0.8 has multiple race conditions.
Upstream patch:
https://git.kernel.org/cgit/linux/kernel/git/torvalds/linux.git/commit/?id=c7084edc3f6d67750f50d4183134c4fb5712a5c8
https://github.com/torvalds/linux/commit/c7084edc3f6d67750f50d4183134c4fb5712a5c8
Reference:
https://cdn.kernel.org/pub/linux/kernel/v5.x/ChangeLog-5.0.8
Discussion:
Created kernel tracking bugs for this issue:
Affects: fedora-all [bug 1705499]
---
This was fixed for Fedora with the 5.0.8 stable kernel updates.
---
The fix proposed by upstream is not actually fixing the problem, ins
http://lists.opensuse.org/opensuse-security-announce/2019-05/msg00037.htmlhttp://lists.opensuse.org/opensuse-security-announce/2019-05/msg00043.htmlhttp://lists.opensuse.org/opensuse-security-announce/2019-05/msg00071.htmlhttp://www.openwall.com/lists/oss-security/2019/04/29/1https://cdn.kernel.org/pub/linux/kernel/v4.x/ChangeLog-4.14.112https://cdn.kernel.org/pub/linux/kernel/v4.x/ChangeLog-4.19.35https://cdn.kernel.org/pub/linux/kernel/v4.x/ChangeLog-4.9.169https://cdn.kernel.org/pub/linux/kernel/v5.x/ChangeLog-5.0.8https://git.kernel.org/cgit/linux/kernel/git/torvalds/linux.git/commit/?id=c7084edc3f6d67750f50d4183134c4fb5712a5c8https://github.com/torvalds/linux/commit/c7084edc3f6d67750f50d4183134c4fb5712a5c8https://lists.debian.org/debian-lts-announce/2019/05/msg00041.htmlhttps://lists.debian.org/debian-lts-announce/2019/05/msg00042.htmlhttps://lists.debian.org/debian-lts-announce/2019/06/msg00011.htmlhttps://seclists.org/bugtraq/2019/Jun/26https://security.netapp.com/advisory/ntap-20190517-0005/https://support.f5.com/csp/article/K50222414https://www.debian.org/security/2019/dsa-4465http://lists.opensuse.org/opensuse-security-announce/2019-05/msg00037.htmlhttp://lists.opensuse.org/opensuse-security-announce/2019-05/msg00043.htmlhttp://lists.opensuse.org/opensuse-security-announce/2019-05/msg00071.htmlhttp://www.openwall.com/lists/oss-security/2019/04/29/1https://cdn.kernel.org/pub/linux/kernel/v4.x/ChangeLog-4.14.112https://cdn.kernel.org/pub/linux/kernel/v4.x/ChangeLog-4.19.35https://cdn.kernel.org/pub/linux/kernel/v4.x/ChangeLog-4.9.169https://cdn.kernel.org/pub/linux/kernel/v5.x/ChangeLog-5.0.8https://git.kernel.org/cgit/linux/kernel/git/torvalds/linux.git/commit/?id=c7084edc3f6d67750f50d4183134c4fb5712a5c8https://github.com/torvalds/linux/commit/c7084edc3f6d67750f50d4183134c4fb5712a5c8https://lists.debian.org/debian-lts-announce/2019/05/msg00041.htmlhttps://lists.debian.org/debian-lts-announce/2019/05/msg00042.htmlhttps://lists.debian.org/debian-lts-announce/2019/06/msg00011.htmlhttps://seclists.org/bugtraq/2019/Jun/26https://security.netapp.com/advisory/ntap-20190517-0005/https://support.f5.com/csp/article/K50222414https://www.debian.org/security/2019/dsa-4465
2019-04-23
Published