CVE-2019-11815
published 2019-05-08CVE-2019-11815: An issue was discovered in rds_tcp_kill_sock in net/rds/tcp.c in the Linux kernel before 5.0.8. There is a race condition leading to a use-after-free, related…
PriorityP347high8.1CVSS 3.1
AVNACHPRNUINSUCHIHAH
EPSS
4.46%
90.4th percentile
An issue was discovered in rds_tcp_kill_sock in net/rds/tcp.c in the Linux kernel before 5.0.8. There is a race condition leading to a use-after-free, related to net namespace cleanup.
Affected
27 ranges· showing 25
| Vendor | Product | Version range | Fixed in |
|---|---|---|---|
| apparmor | apparmor | >= 0 < 2.10.95-0ubuntu2.11 | 2.10.95-0ubuntu2.11 |
| canonical | ubuntu_linux | — | — |
| canonical | ubuntu_linux | — | — |
| canonical | ubuntu_linux | — | — |
| canonical | ubuntu_linux | — | — |
| debian | debian_linux | — | — |
| debian | debian_linux | — | — |
| debian | linux | < linux 4.19.37-1 (bookworm) | linux 4.19.37-1 (bookworm) |
| linux | linux_kernel | — | — |
| linux | linux_kernel | >= 0 < 4.19.37-1 | 4.19.37-1 |
| linux | linux_kernel | >= 0 < 4.19.37-1 | 4.19.37-1 |
| linux | linux_kernel | >= 0 < 4.19.37-1 | 4.19.37-1 |
| linux | linux_kernel | >= 0 < 4.19.37-1 | 4.19.37-1 |
| linux | linux_kernel | >= 0 < 4.4.0-150.176 | 4.4.0-150.176 |
| linux | linux_kernel | >= 0 < 4.15.0-55.60 | 4.15.0-55.60 |
| linux | linux_kernel | >= 4.14 < 4.14.112 | 4.14.112 |
| linux | linux_kernel | >= 4.19 < 4.19.35 | 4.19.35 |
| linux | linux_kernel | >= 4.3 < 4.4.179 | 4.4.179 |
| linux | linux_kernel | >= 4.9 < 4.9.169 | 4.9.169 |
| linux | linux_kernel | >= 5.0 < 5.0.8 | 5.0.8 |
| netapp | active_iq_unified_manager | >= 9.5 | — |
| netapp | storage_replication_adapter | — | — |
| netapp | vasa_provider_for_clustered_data_ontap | >= 7.2 | — |
| netapp | virtual_storage_console | >= 7.2 | — |
| opensuse | leap | — | — |
CVSS provenance
nvdv3.18.1HIGHCVSS:3.1/AV:N/AC:H/PR:N/UI:N/S:U/C:H/I:H/A:H
nvdv2.09.3CRITICALAV:N/AC:M/Au:N/C:C/I:C/A:C
osv8.1HIGH
vendor_debian8.1HIGH
vendor_redhat8.1HIGH
vendor_ubuntu7.8HIGH
Stop checking back — get the weekly exploitation signal.
Every Monday: what got weaponized or added to CISA KEV in the last seven days — each CVE cross-linked to its PoC, Nuclei template, and detection rule. Free, one email a week, unsubscribe in one click.
Ubuntu
Linux kernel (AWS) vulnerabilities
vendor_ubuntu·2019-09-02·CVSS 3.3
CVE-2018-13053 [LOW] Linux kernel (AWS) vulnerabilities
Title: Linux kernel (AWS) vulnerabilities
Summary: Several security issues were fixed in the Linux kernel.
It was discovered that the alarmtimer implementation in the Linux kernel
contained an integer overflow vulnerability. A local attacker could use
this to cause a denial of service. (CVE-2018-13053)
Wen Xu discovered that the XFS filesystem implementation in the Linux
kernel did not properly track inode validations. An attacker could use this
to construct a malicious XFS image that, when mounted, could cause a denial
of service (system crash). (CVE-2018-13093)
Wen Xu discovered that the f2fs file system implementation in the Linux
kernel did not properly validate metadata. An attacker could use this to
construct a malicious f2fs image that, when mounted, could cause a denial
of serv
Ubuntu
Linux kernel (HWE) vulnerabilities
vendor_ubuntu·2019-07-23·CVSS 7.8
CVE-2019-11085 [HIGH] Linux kernel (HWE) vulnerabilities
Title: Linux kernel (HWE) vulnerabilities
Summary: Several security issues were fixed in the Linux kernel.
USN-4068-1 fixed vulnerabilities in the Linux kernel for Ubuntu
18.04 LTS. This update provides the corresponding updates for the
Linux Hardware Enablement (HWE) kernel from Ubuntu 18.04 for Ubuntu
16.04 LTS.
Adam Zabrocki discovered that the Intel i915 kernel mode graphics driver in
the Linux kernel did not properly restrict mmap() ranges in some
situations. A local attacker could use this to cause a denial of service
(system crash) or possibly execute arbitrary code. (CVE-2019-11085)
It was discovered that a race condition leading to a use-after-free existed
in the Reliable Datagram Sockets (RDS) protocol implementation in the Linux
kernel. The RDS protocol is disabled via block
Ubuntu
Linux kernel vulnerabilities
vendor_ubuntu·2019-07-23·CVSS 7.8
CVE-2019-11085 [HIGH] Linux kernel vulnerabilities
Title: Linux kernel vulnerabilities
Summary: Several security issues were fixed in the Linux kernel.
Adam Zabrocki discovered that the Intel i915 kernel mode graphics driver in
the Linux kernel did not properly restrict mmap() ranges in some
situations. A local attacker could use this to cause a denial of service
(system crash) or possibly execute arbitrary code. (CVE-2019-11085)
It was discovered that a race condition leading to a use-after-free existed
in the Reliable Datagram Sockets (RDS) protocol implementation in the Linux
kernel. The RDS protocol is disabled via blocklist by default in Ubuntu.
If enabled, a local attacker could use this to cause a denial of service
(system crash) or possibly execute arbitrary code. (CVE-2019-11815)
It was discovered that the ext4 file system imp
Ubuntu
Linux kernel (Xenial HWE) vulnerabilities
vendor_ubuntu·2019-06-07·CVSS 4.7
CVE-2019-11190 [MEDIUM] Linux kernel (Xenial HWE) vulnerabilities
Title: Linux kernel (Xenial HWE) vulnerabilities
Summary: Several security issues were fixed in the Linux kernel.
USN-4008-1 fixed vulnerabilities in the Linux kernel for Ubuntu 16.04
LTS. This update provides the corresponding updates for the Linux
Hardware Enablement (HWE) kernel from Ubuntu 16.04 LTS for Ubuntu
14.04 ESM.
Robert Święcki discovered that the Linux kernel did not properly apply
Address Space Layout Randomization (ASLR) in some situations for setuid elf
binaries. A local attacker could use this to improve the chances of
exploiting an existing vulnerability in a setuid elf binary.
(CVE-2019-11190)
It was discovered that a null pointer dereference vulnerability existed in
the LSI Logic MegaRAID driver in the Linux kernel. A local attacker could
use this to cause a denial
Ubuntu
AppArmor update
vendor_ubuntu·2019-06-05·CVSS 4.7
CVE-2019-11190 [MEDIUM] AppArmor update
Title: AppArmor update
Summary: Several policy updates were made for running under the recently updated
Linux kernel.
USN-4008-1 fixed multiple security issues in the Linux kernel. This update
provides the corresponding changes to AppArmor policy for correctly
operating under the Linux kernel with fixes for CVE-2019-11190. Without
these changes, some profile transitions may be unintentionally denied due
to missing mmap ('m') rules.
Original advisory details:
Robert Święcki discovered that the Linux kernel did not properly apply
Address Space Layout Randomization (ASLR) in some situations for setuid elf
binaries. A local attacker could use this to improve the chances of
exploiting an existing vulnerability in a setuid elf binary.
(CVE-2019-11190)
It was discovered that a null pointer d
Ubuntu
Linux kernel vulnerabilities
vendor_ubuntu·2019-06-04·CVSS 4.7
CVE-2019-11190 [MEDIUM] Linux kernel vulnerabilities
Title: Linux kernel vulnerabilities
Summary: Several security issues were fixed in the Linux kernel.
Robert Święcki discovered that the Linux kernel did not properly apply
Address Space Layout Randomization (ASLR) in some situations for setuid elf
binaries. A local attacker could use this to improve the chances of
exploiting an existing vulnerability in a setuid elf binary.
(CVE-2019-11190)
It was discovered that a null pointer dereference vulnerability existed in
the LSI Logic MegaRAID driver in the Linux kernel. A local attacker could
use this to cause a denial of service (system crash). (CVE-2019-11810)
It was discovered that a race condition leading to a use-after-free existed
in the Reliable Datagram Sockets (RDS) protocol implementation in the Linux
kernel. The RDS protocol is di
Ubuntu
Linux kernel vulnerabilities
vendor_ubuntu·2019-06-04·CVSS 7.5
CVE-2019-11810 [HIGH] Linux kernel vulnerabilities
Title: Linux kernel vulnerabilities
Summary: Several security issues were fixed in the Linux kernel.
It was discovered that a null pointer dereference vulnerability existed in
the LSI Logic MegaRAID driver in the Linux kernel. A local attacker could
use this to cause a denial of service (system crash). (CVE-2019-11810)
It was discovered that a race condition leading to a use-after-free existed
in the Reliable Datagram Sockets (RDS) protocol implementation in the Linux
kernel. The RDS protocol is disabled via blocklist by default in Ubuntu.
If enabled, a local attacker could use this to cause a denial of service
(system crash) or possibly execute arbitrary code. (CVE-2019-11815)
Instructions: After a standard system update you need to reboot your computer to make
all the necessary chang
Red Hat
kernel: race condition in rds_tcp_kill_sock in net/rds/tcp.c leading to use-after-free
vendor_redhat·2019-05-08·CVSS 8.1
CVE-2019-11815 [HIGH] CWE-362 kernel: race condition in rds_tcp_kill_sock in net/rds/tcp.c leading to use-after-free
kernel: race condition in rds_tcp_kill_sock in net/rds/tcp.c leading to use-after-free
An issue was discovered in rds_tcp_kill_sock in net/rds/tcp.c in the Linux kernel before 5.0.8. There is a race condition leading to a use-after-free, related to net namespace cleanup.
A flaw was found in the Linux kernel's implementation of RDS over TCP. A system that has the rds_tcp kernel module loaded (either through autoload via local process running listen(), or manual loading) could possibly cause a use after free (UAF) in which an attacker who is able to manipulate socket state while a network namespace is being torn down. This can lead to possible memory corruption and privilege escalation.
Statement: The affected code is not built in the following kernels:
- Red Hat Enterprise Linux 7
- Red
Debian
CVE-2019-11815: linux - An issue was discovered in rds_tcp_kill_sock in net/rds/tcp.c in the Linux kerne...
vendor_debian·2019·CVSS 8.1
CVE-2019-11815 [HIGH] CVE-2019-11815: linux - An issue was discovered in rds_tcp_kill_sock in net/rds/tcp.c in the Linux kerne...
An issue was discovered in rds_tcp_kill_sock in net/rds/tcp.c in the Linux kernel before 5.0.8. There is a race condition leading to a use-after-free, related to net namespace cleanup.
Scope: local
bookworm: resolved (fixed in 4.19.37-1)
bullseye: resolved (fixed in 4.19.37-1)
forky: resolved (fixed in 4.19.37-1)
sid: resolved (fixed in 4.19.37-1)
trixie: resolved (fixed in 4.19.37-1)
GHSA
GHSA-qw9v-6653-v66g: An issue was discovered in rds_tcp_kill_sock in net/rds/tcp
ghsa_unreviewed·2022-05-24
CVE-2019-11815 [HIGH] CWE-362 GHSA-qw9v-6653-v66g: An issue was discovered in rds_tcp_kill_sock in net/rds/tcp
An issue was discovered in rds_tcp_kill_sock in net/rds/tcp.c in the Linux kernel before 5.0.8. There is a race condition leading to a use-after-free, related to net namespace cleanup.
OSV
linux-aws vulnerabilities
osv·2019-09-02·CVSS 3.3
CVE-2018-13053 [LOW] linux-aws vulnerabilities
linux-aws vulnerabilities
It was discovered that the alarmtimer implementation in the Linux kernel
contained an integer overflow vulnerability. A local attacker could use
this to cause a denial of service. (CVE-2018-13053)
Wen Xu discovered that the XFS filesystem implementation in the Linux
kernel did not properly track inode validations. An attacker could use this
to construct a malicious XFS image that, when mounted, could cause a denial
of service (system crash). (CVE-2018-13093)
Wen Xu discovered that the f2fs file system implementation in the Linux
kernel did not properly validate metadata. An attacker could use this to
construct a malicious f2fs image that, when mounted, could cause a denial
of service (system crash). (CVE-2018-13096, CVE-2018-13097, CVE-2018-13098,
CVE-2018-1309
OSV
linux, linux-aws, linux-gcp, linux-kvm, linux-oracle, linux-raspi2, linux-snapdragon vulnerabilities
osv·2019-07-23·CVSS 7.8
CVE-2019-11085 [HIGH] linux, linux-aws, linux-gcp, linux-kvm, linux-oracle, linux-raspi2, linux-snapdragon vulnerabilities
linux, linux-aws, linux-gcp, linux-kvm, linux-oracle, linux-raspi2, linux-snapdragon vulnerabilities
Adam Zabrocki discovered that the Intel i915 kernel mode graphics driver in
the Linux kernel did not properly restrict mmap() ranges in some
situations. A local attacker could use this to cause a denial of service
(system crash) or possibly execute arbitrary code. (CVE-2019-11085)
It was discovered that a race condition leading to a use-after-free existed
in the Reliable Datagram Sockets (RDS) protocol implementation in the Linux
kernel. The RDS protocol is disabled via blocklist by default in Ubuntu.
If enabled, a local attacker could use this to cause a denial of service
(system crash) or possibly execute arbitrary code. (CVE-2019-11815)
It was discovered that the ext4 file system impl
OSV
linux-hwe, linux-gcp vulnerabilities
osv·2019-07-23·CVSS 7.8
[HIGH] linux-hwe, linux-gcp vulnerabilities
linux-hwe, linux-gcp vulnerabilities
USN-4068-1 fixed vulnerabilities in the Linux kernel for Ubuntu
18.04 LTS. This update provides the corresponding updates for the
Linux Hardware Enablement (HWE) kernel from Ubuntu 18.04 for Ubuntu
16.04 LTS.
Adam Zabrocki discovered that the Intel i915 kernel mode graphics driver in
the Linux kernel did not properly restrict mmap() ranges in some
situations. A local attacker could use this to cause a denial of service
(system crash) or possibly execute arbitrary code. (CVE-2019-11085)
It was discovered that a race condition leading to a use-after-free existed
in the Reliable Datagram Sockets (RDS) protocol implementation in the Linux
kernel. The RDS protocol is disabled via blocklist by default in Ubuntu.
If enabled, a local attacker could use this
OSV
linux-lts-xenial, linux-aws vulnerabilities
osv·2019-06-07·CVSS 4.7
[MEDIUM] linux-lts-xenial, linux-aws vulnerabilities
linux-lts-xenial, linux-aws vulnerabilities
USN-4008-1 fixed vulnerabilities in the Linux kernel for Ubuntu 16.04
LTS. This update provides the corresponding updates for the Linux
Hardware Enablement (HWE) kernel from Ubuntu 16.04 LTS for Ubuntu
14.04 ESM.
Robert Święcki discovered that the Linux kernel did not properly apply
Address Space Layout Randomization (ASLR) in some situations for setuid elf
binaries. A local attacker could use this to improve the chances of
exploiting an existing vulnerability in a setuid elf binary.
(CVE-2019-11190)
It was discovered that a null pointer dereference vulnerability existed in
the LSI Logic MegaRAID driver in the Linux kernel. A local attacker could
use this to cause a denial of service (system crash). (CVE-2019-11810)
It was discovered that a r
OSV
apparmor update
osv·2019-06-05·CVSS 4.7
CVE-2019-11190 [MEDIUM] apparmor update
apparmor update
USN-4008-1 fixed multiple security issues in the Linux kernel. This update
provides the corresponding changes to AppArmor policy for correctly
operating under the Linux kernel with fixes for CVE-2019-11190. Without
these changes, some profile transitions may be unintentionally denied due
to missing mmap ('m') rules.
Original advisory details:
Robert Święcki discovered that the Linux kernel did not properly apply
Address Space Layout Randomization (ASLR) in some situations for setuid elf
binaries. A local attacker could use this to improve the chances of
exploiting an existing vulnerability in a setuid elf binary.
(CVE-2019-11190)
It was discovered that a null pointer dereference vulnerability existed in
the LSI Logic MegaRAID driver in the Linux kernel. A local attacker
OSV
linux, linux-aws, linux-kvm, linux-raspi2, linux-snapdragon vulnerabilities
osv·2019-06-04·CVSS 4.7
CVE-2019-11190 [MEDIUM] linux, linux-aws, linux-kvm, linux-raspi2, linux-snapdragon vulnerabilities
linux, linux-aws, linux-kvm, linux-raspi2, linux-snapdragon vulnerabilities
Robert Święcki discovered that the Linux kernel did not properly apply
Address Space Layout Randomization (ASLR) in some situations for setuid elf
binaries. A local attacker could use this to improve the chances of
exploiting an existing vulnerability in a setuid elf binary.
(CVE-2019-11190)
It was discovered that a null pointer dereference vulnerability existed in
the LSI Logic MegaRAID driver in the Linux kernel. A local attacker could
use this to cause a denial of service (system crash). (CVE-2019-11810)
It was discovered that a race condition leading to a use-after-free existed
in the Reliable Datagram Sockets (RDS) protocol implementation in the Linux
kernel. The RDS protocol is disabled via blocklist by de
OSV
CVE-2019-11815: An issue was discovered in rds_tcp_kill_sock in net/rds/tcp
osv·2019-05-08·CVSS 8.1
CVE-2019-11815 [HIGH] CVE-2019-11815: An issue was discovered in rds_tcp_kill_sock in net/rds/tcp
An issue was discovered in rds_tcp_kill_sock in net/rds/tcp.c in the Linux kernel before 5.0.8. There is a race condition leading to a use-after-free, related to net namespace cleanup.
No detection rules found.
No public exploits indexed.
Trendmicro
CVE-2019-11815: A Cautionary Tale About CVSS Scores
blogs_trendmicro·2019-05-24·CVSS 8.1
CVE-2019-11815 [HIGH] CVE-2019-11815: A Cautionary Tale About CVSS Scores
Exploits & Vulnerabilities
## CVE-2019-11815: A Cautionary Tale About CVSS Scores
The issue was “discovered in rds_tcp_kill_sock in net/rds/tcp.c in the Linux kernel before 5.0.8,” and that there is “a race condition leading to a use-after-free, related to net namespace cleanup.”
By: John Simpson 2019/05/24 Read time: ( words)
Save to Folio
Vulnerabilities in the Linux kernel are not uncommon. There are roughly 26 million lines of code , with 3,385,121 lines added and 2,512,040 lines removed in 2018 alone. The sheer complexity of that much code means that vulnerabilities are bound to exist. However, what is not at all common is the existence of unauthenticated remote code execution (RCE) vulnerabilities — a critical issue that every system administrator hopes to avoid.
On May 8, 2019
Trendmicro
CVE-2019-11815: A Cautionary Tale About CVSS Scores
blogs_trendmicro·2019-05-24·CVSS 8.1
CVE-2019-11815 [HIGH] CVE-2019-11815: A Cautionary Tale About CVSS Scores
Sfruttamento vulnerabilità
## CVE-2019-11815: A Cautionary Tale About CVSS Scores
The issue was “discovered in rds_tcp_kill_sock in net/rds/tcp.c in the Linux kernel before 5.0.8,” and that there is “a race condition leading to a use-after-free, related to net namespace cleanup.”
By: John Simpson May 24, 2019 Read time: ( words)
Save to Folio
Vulnerabilities in the Linux kernel are not uncommon. There are roughly 26 million lines of code , with 3,385,121 lines added and 2,512,040 lines removed in 2018 alone. The sheer complexity of that much code means that vulnerabilities are bound to exist. However, what is not at all common is the existence of unauthenticated remote code execution (RCE) vulnerabilities — a critical issue that every system administrator hopes to avoid.
On May 8, 20
Trendmicro
CVE-2019-11815: A Cautionary Tale About CVSS Scores
blogs_trendmicro·2019-05-24·CVSS 8.1
CVE-2019-11815 [HIGH] CVE-2019-11815: A Cautionary Tale About CVSS Scores
Exploits & Vulnerabilities
# CVE-2019-11815: A Cautionary Tale About CVSS Scores
The issue was “discovered in rds_tcp_kill_sock in net/rds/tcp.c in the Linux kernel before 5.0.8,” and that there is “a race condition leading to a use-after-free, related to net namespace cleanup.”
By: John Simpson
2019/05/24
Read time: ( words)
Save to Folio
Vulnerabilities in the Linux kernel are not uncommon. There are roughly 26 million lines of code, with 3,385,121 lines added and 2,512,040 lines removed in 2018 alone. The sheer complexity of that much code means that vulnerabilities are bound to exist. However, what is not at all common is the existence of unauthenticated remote code execution (RCE) vulnerabilities — a critical issue that every system administrator hopes to avoid.
On May 8, 2019,
Trendmicro
CVE-2019-11815: A Cautionary Tale About CVSS Scores
blogs_trendmicro·2019-05-24·CVSS 8.1
CVE-2019-11815 [HIGH] CVE-2019-11815: A Cautionary Tale About CVSS Scores
Exploits y vulnerabilidades
## CVE-2019-11815: A Cautionary Tale About CVSS Scores
The issue was “discovered in rds_tcp_kill_sock in net/rds/tcp.c in the Linux kernel before 5.0.8,” and that there is “a race condition leading to a use-after-free, related to net namespace cleanup.”
By: John Simpson May 24, 2019 Read time: ( words)
Save to Folio
Vulnerabilities in the Linux kernel are not uncommon. There are roughly 26 million lines of code , with 3,385,121 lines added and 2,512,040 lines removed in 2018 alone. The sheer complexity of that much code means that vulnerabilities are bound to exist. However, what is not at all common is the existence of unauthenticated remote code execution (RCE) vulnerabilities — a critical issue that every system administrator hopes to avoid.
On May 8, 2
Trendmicro
CVE-2019-11815: A Cautionary Tale About CVSS Scores
blogs_trendmicro·2019-05-24·CVSS 8.1
CVE-2019-11815 [HIGH] CVE-2019-11815: A Cautionary Tale About CVSS Scores
Exploits & Vulnerabilities
## CVE-2019-11815: A Cautionary Tale About CVSS Scores
The issue was “discovered in rds_tcp_kill_sock in net/rds/tcp.c in the Linux kernel before 5.0.8,” and that there is “a race condition leading to a use-after-free, related to net namespace cleanup.”
By: John Simpson May 24, 2019 Read time: ( words)
Save to Folio
Vulnerabilities in the Linux kernel are not uncommon. There are roughly 26 million lines of code , with 3,385,121 lines added and 2,512,040 lines removed in 2018 alone. The sheer complexity of that much code means that vulnerabilities are bound to exist. However, what is not at all common is the existence of unauthenticated remote code execution (RCE) vulnerabilities — a critical issue that every system administrator hopes to avoid.
On May 8, 20
Trendmicro
CVE-2019-11815: A Cautionary Tale About CVSS Scores
blogs_trendmicro·2019-05-24·CVSS 8.1
CVE-2019-11815 [HIGH] CVE-2019-11815: A Cautionary Tale About CVSS Scores
Ausnutzung von Schwachstellen
## CVE-2019-11815: A Cautionary Tale About CVSS Scores
The issue was “discovered in rds_tcp_kill_sock in net/rds/tcp.c in the Linux kernel before 5.0.8,” and that there is “a race condition leading to a use-after-free, related to net namespace cleanup.”
By: John Simpson May 24, 2019 Read time: ( words)
Save to Folio
Vulnerabilities in the Linux kernel are not uncommon. There are roughly 26 million lines of code , with 3,385,121 lines added and 2,512,040 lines removed in 2018 alone. The sheer complexity of that much code means that vulnerabilities are bound to exist. However, what is not at all common is the existence of unauthenticated remote code execution (RCE) vulnerabilities — a critical issue that every system administrator hopes to avoid.
On May 8,
Trendmicro
CVE-2019-11815: A Cautionary Tale About CVSS Scores
blogs_trendmicro·2019-05-24·CVSS 8.1
CVE-2019-11815 [HIGH] CVE-2019-11815: A Cautionary Tale About CVSS Scores
Exploits & Vulnerabilities
# CVE-2019-11815: A Cautionary Tale About CVSS Scores
The issue was “discovered in rds_tcp_kill_sock in net/rds/tcp.c in the Linux kernel before 5.0.8,” and that there is “a race condition leading to a use-after-free, related to net namespace cleanup.”
By: John Simpson
May 24, 2019
Read time: ( words)
Save to Folio
Vulnerabilities in the Linux kernel are not uncommon. There are roughly 26 million lines of code, with 3,385,121 lines added and 2,512,040 lines removed in 2018 alone. The sheer complexity of that much code means that vulnerabilities are bound to exist. However, what is not at all common is the existence of unauthenticated remote code execution (RCE) vulnerabilities — a critical issue that every system administrator hopes to avoid.
On May 8, 201
Bugzilla
CVE-2019-11815 kernel: race condition in rds_tcp_kill_sock in net/rds/tcp.c leading to use-after-free [fedora-all]
bugzilla·2019-05-15·CVSS 8.1
CVE-2019-11815 [HIGH] CVE-2019-11815 kernel: race condition in rds_tcp_kill_sock in net/rds/tcp.c leading to use-after-free [fedora-all]
CVE-2019-11815 kernel: race condition in rds_tcp_kill_sock in net/rds/tcp.c leading to use-after-free [fedora-all]
This is an automatically created tracking bug! It was created to ensure
that one or more security vulnerabilities are fixed in affected versions
of fedora-all.
For comments that are specific to the vulnerability please use bugs filed
against the "Security Response" product referenced in the "Blocks" field.
For more information see:
http://fedoraproject.org/wiki/Security/TrackingBugs
When submitting as an update, use the fedpkg template provided in the next
comment(s). This will include the bug IDs of this tracking bug as well as
the relevant top-level CVE bugs.
Please also mention the CVE IDs being fixed in the RPM changelog and the
fedpkg commit message.
NOTE: this issu
Bugzilla
CVE-2019-11815 kernel: race condition in rds_tcp_kill_sock in net/rds/tcp.c leading to use-after-free
bugzilla·2019-05-10·CVSS 8.1
CVE-2019-11815 [HIGH] CVE-2019-11815 kernel: race condition in rds_tcp_kill_sock in net/rds/tcp.c leading to use-after-free
CVE-2019-11815 kernel: race condition in rds_tcp_kill_sock in net/rds/tcp.c leading to use-after-free
A flaw was found in the linux kernels implementation of RDS over TCP. A system that has the rds_tcp kernel module loaded (either through autoload via local process running listen(), or manual loading) could possibly cause a Use After Free (UAF) in which an attacker who is able to manipulate socket state while a network namespace is being torn down. This can lead to possible memory corruption and privilege escalation.
Upstream Repository:
https://github.com/torvalds/linux/commit/cb66ddd156203daefb8d71158036b27b0e2caf63
Discussion:
Created kernel tracking bugs for this issue:
Affects: fedora-all [bug 1710152]
---
Statement:
The affected code is not built in the following kernels:
-
arXiv
Timeloops: Automatic System Call Policy Learning for Containerized Microservices
arxiv_fulltext·2022-09-26
Timeloops: Automatic System Call Policy Learning for Containerized Microservices
Meghna Pancholi
[email protected]
Columbia University
Andreas D. Kellas
[email protected]
Columbia University
Vasileios P. Kemerlis
[email protected]
Brown University
Simha Sethumadhavan
[email protected]
Columbia University
## Abstract
We introduce , a novel technique for automatically learning system
call filtering policies for containerized microservices applications. At
run-time, automatically learns which system calls a program should
be allowed to invoke, while rejecting attempts to call spurious system calls.
Further, addresses many of the shortcomings of state-of-the-art
static analysis-based techniques, such as the ability to generate tight filters
for programs written in interpreted languages such as PHP, Python, and
JavaScript. has a simple and rob
http://lists.opensuse.org/opensuse-security-announce/2019-05/msg00037.htmlhttp://lists.opensuse.org/opensuse-security-announce/2019-05/msg00043.htmlhttp://lists.opensuse.org/opensuse-security-announce/2019-05/msg00071.htmlhttp://packetstormsecurity.com/files/153799/Kernel-Live-Patch-Security-Notice-LSN-0053-1.htmlhttp://www.securityfocus.com/bid/108283https://cdn.kernel.org/pub/linux/kernel/v5.x/ChangeLog-5.0.8https://git.kernel.org/cgit/linux/kernel/git/torvalds/linux.git/commit/?id=cb66ddd156203daefb8d71158036b27b0e2caf63https://github.com/torvalds/linux/commit/cb66ddd156203daefb8d71158036b27b0e2caf63https://lists.debian.org/debian-lts-announce/2019/06/msg00011.htmlhttps://seclists.org/bugtraq/2019/Jun/26https://security.netapp.com/advisory/ntap-20190719-0003/https://support.f5.com/csp/article/K32019083https://usn.ubuntu.com/4005-1/https://usn.ubuntu.com/4008-1/https://usn.ubuntu.com/4008-3/https://usn.ubuntu.com/4068-1/https://usn.ubuntu.com/4068-2/https://usn.ubuntu.com/4118-1/https://www.debian.org/security/2019/dsa-4465http://lists.opensuse.org/opensuse-security-announce/2019-05/msg00037.htmlhttp://lists.opensuse.org/opensuse-security-announce/2019-05/msg00043.htmlhttp://lists.opensuse.org/opensuse-security-announce/2019-05/msg00071.htmlhttp://packetstormsecurity.com/files/153799/Kernel-Live-Patch-Security-Notice-LSN-0053-1.htmlhttp://www.securityfocus.com/bid/108283https://cdn.kernel.org/pub/linux/kernel/v5.x/ChangeLog-5.0.8https://git.kernel.org/cgit/linux/kernel/git/torvalds/linux.git/commit/?id=cb66ddd156203daefb8d71158036b27b0e2caf63https://github.com/torvalds/linux/commit/cb66ddd156203daefb8d71158036b27b0e2caf63https://lists.debian.org/debian-lts-announce/2019/06/msg00011.htmlhttps://seclists.org/bugtraq/2019/Jun/26https://security.netapp.com/advisory/ntap-20190719-0003/https://support.f5.com/csp/article/K32019083https://usn.ubuntu.com/4005-1/https://usn.ubuntu.com/4008-1/https://usn.ubuntu.com/4008-3/https://usn.ubuntu.com/4068-1/https://usn.ubuntu.com/4068-2/https://usn.ubuntu.com/4118-1/https://www.debian.org/security/2019/dsa-4465
2019-05-08
Published