CVE-2019-11486

CWE-362Race Condition8 documents7 sources
Severity
7.0HIGH
EPSS
0.0%
top 85.76%
CISA KEV
Not in KEV
Exploit
No known exploits
Timeline
PublishedApr 23
Latest updateMay 24

Description

The Siemens R3964 line discipline driver in drivers/tty/n_r3964.c in the Linux kernel before 5.0.8 has multiple race conditions.

CVSS vector

CVSS:3.1/AV:L/AC:H/PR:L/UI:N/S:U/C:H/I:H/A:HExploitability: 1.0 | Impact: 5.9

Affected Packages6 packages

NVDlinux/linux_kernel3.173.18.139+6
Debianlinux< 4.19.37-1+3
NVDopensuse/leap15.1, 42.3+1

Also affects: Debian Linux 9.0

Patches

🔴Vulnerability Details

3
GHSA
GHSA-fq7v-x63h-q5h9: The Siemens R3964 line discipline driver in drivers/tty/n_r39642022-05-24
CVEList
CVE-2019-11486: The Siemens R3964 line discipline driver in drivers/tty/n_r39642019-04-23
OSV
CVE-2019-11486: The Siemens R3964 line discipline driver in drivers/tty/n_r39642019-04-23

📋Vendor Advisories

2
Red Hat
kernel: multiple race conditions in Siemens R3964 line discipline driver in drivers/tty/n_r3964.c leading to denial of service2019-04-05
Debian
CVE-2019-11486: linux - The Siemens R3964 line discipline driver in drivers/tty/n_r3964.c in the Linux k...2019

💬Community

2
Bugzilla
CVE-2019-11486 kernel: multiple race conditions in Siemens R3964 line discipline driver in drivers/tty/n_r3964.c leading to denial of service [fedora-all]2019-05-02
Bugzilla
CVE-2019-11486 kernel: multiple race conditions in Siemens R3964 line discipline driver in drivers/tty/n_r3964.c leading to denial of service2019-05-02
CVE-2019-11486 (HIGH CVSS 7) | The Siemens R3964 line discipline d | cvebase.io