CVE-2019-15920
published 2019-09-04CVE-2019-15920: An issue was discovered in the Linux kernel before 5.0.10. SMB2_read in fs/cifs/smb2pdu.c has a use-after-free. NOTE: this was not fixed correctly in 5.0.10…
PriorityP422medium4.3CVSS 3.1
AVNACLPRLUINSUCLINAN
EPSS
1.77%
75.8th percentile
An issue was discovered in the Linux kernel before 5.0.10. SMB2_read in fs/cifs/smb2pdu.c has a use-after-free. NOTE: this was not fixed correctly in 5.0.10; see the 5.0.11 ChangeLog, which documents a memory leak.
Affected
8 ranges
| Vendor | Product | Version range | Fixed in |
|---|---|---|---|
| debian | linux | < linux 5.2.6-1 (bookworm) | linux 5.2.6-1 (bookworm) |
| linux | linux_kernel | < 5.0.10 | 5.0.10 |
| linux | linux_kernel | >= 0 < 5.2.6-1 | 5.2.6-1 |
| linux | linux_kernel | >= 0 < 5.2.6-1 | 5.2.6-1 |
| linux | linux_kernel | >= 0 < 5.2.6-1 | 5.2.6-1 |
| linux | linux_kernel | >= 0 < 5.2.6-1 | 5.2.6-1 |
| opensuse | leap | — | — |
| opensuse | leap | — | — |
CVSS provenance
nvdv3.14.3MEDIUMCVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:U/C:L/I:N/A:N
nvdv2.04.0MEDIUMAV:N/AC:L/Au:S/C:P/I:N/A:N
osv4.3MEDIUM
vendor_debian4.3MEDIUM
vendor_redhat4.3MEDIUM
Stop checking back — get the weekly exploitation signal.
Every Monday: what got weaponized or added to CISA KEV in the last seven days — each CVE cross-linked to its PoC, Nuclei template, and detection rule. Free, one email a week, unsubscribe in one click.
Red Hat
kernel: use-after-free information leak in SMB2_read
vendor_redhat·2019-09-04·CVSS 4.3
CVE-2019-15920 [MEDIUM] CWE-416 kernel: use-after-free information leak in SMB2_read
kernel: use-after-free information leak in SMB2_read
An issue was discovered in the Linux kernel before 5.0.10. SMB2_read in fs/cifs/smb2pdu.c has a use-after-free. NOTE: this was not fixed correctly in 5.0.10; see the 5.0.11 ChangeLog, which documents a memory leak.
An issue was discovered in the Linux kernel's implementation of the CIFS protocol. The SMB2_read function has a possible use-after-free when CIFS function tracing is enabled. While data is used after being freed, it is has not been determined how it could be used for privilege escalation.
Mitigation: As the CIFS module will be auto-loaded when required, its use can be disabled
by preventing the module from loading with the following instructions:
# echo "install cifs /bin/true" >> /etc/modprobe.d/disable-cifs.conf
The syste
Debian
CVE-2019-15920: linux - An issue was discovered in the Linux kernel before 5.0.10. SMB2_read in fs/cifs/...
vendor_debian·2019·CVSS 4.3
CVE-2019-15920 [MEDIUM] CVE-2019-15920: linux - An issue was discovered in the Linux kernel before 5.0.10. SMB2_read in fs/cifs/...
An issue was discovered in the Linux kernel before 5.0.10. SMB2_read in fs/cifs/smb2pdu.c has a use-after-free. NOTE: this was not fixed correctly in 5.0.10; see the 5.0.11 ChangeLog, which documents a memory leak.
Scope: local
bookworm: resolved (fixed in 5.2.6-1)
bullseye: resolved (fixed in 5.2.6-1)
forky: resolved (fixed in 5.2.6-1)
sid: resolved (fixed in 5.2.6-1)
trixie: resolved (fixed in 5.2.6-1)
GHSA
GHSA-ppjf-83xq-9mv2: An issue was discovered in the Linux kernel before 5
ghsa_unreviewed·2022-05-24
CVE-2019-15920 [MEDIUM] GHSA-ppjf-83xq-9mv2: An issue was discovered in the Linux kernel before 5
An issue was discovered in the Linux kernel before 5.0.10. SMB2_read in fs/cifs/smb2pdu.c has a use-after-free. NOTE: this was not fixed correctly in 5.0.10; see the 5.0.11 ChangeLog, which documents a memory leak.
OSV
CVE-2019-15920: An issue was discovered in the Linux kernel before 5
osv·2019-09-04·CVSS 4.3
CVE-2019-15920 [MEDIUM] CVE-2019-15920: An issue was discovered in the Linux kernel before 5
An issue was discovered in the Linux kernel before 5.0.10. SMB2_read in fs/cifs/smb2pdu.c has a use-after-free. NOTE: this was not fixed correctly in 5.0.10; see the 5.0.11 ChangeLog, which documents a memory leak.
No detection rules found.
No public exploits indexed.
Bugzilla
CVE-2019-15920 kernel: use-after-free in SMB2_read function in fs/cifs/smb2pdu.c [fedora-all]
bugzilla·2019-10-11·CVSS 4.3
CVE-2019-15920 [MEDIUM] CVE-2019-15920 kernel: use-after-free in SMB2_read function in fs/cifs/smb2pdu.c [fedora-all]
CVE-2019-15920 kernel: use-after-free in SMB2_read function in fs/cifs/smb2pdu.c [fedora-all]
This is an automatically created tracking bug! It was created to ensure
that one or more security vulnerabilities are fixed in affected versions
of fedora-all.
For comments that are specific to the vulnerability please use bugs filed
against the "Security Response" product referenced in the "Blocks" field.
For more information see:
http://fedoraproject.org/wiki/Security/TrackingBugs
When submitting as an update, use the fedpkg template provided in the next
comment(s). This will include the bug IDs of this tracking bug as well as
the relevant top-level CVE bugs.
Please also mention the CVE IDs being fixed in the RPM changelog and the
fedpkg commit message.
NOTE: this issue affects multiple su
Bugzilla
CVE-2019-15920 kernel: use-after-free information leak in SMB2_read
bugzilla·2019-10-11·CVSS 4.3
CVE-2019-15920 [MEDIUM] CVE-2019-15920 kernel: use-after-free information leak in SMB2_read
CVE-2019-15920 kernel: use-after-free information leak in SMB2_read
An issue was discovered in the Linux kernels implementation of the CIFS protocol. The SMB2_read function has a possible use-after-free when CIFS function tracing is enabled.
While no privilege escalation is immediately obvious, Red Hat will not rule out that it may be possible.
References:
https://cdn.kernel.org/pub/linux/kernel/v5.x/ChangeLog-5.0.10
https://github.com/torvalds/linux/commit/088aaf17aa79300cab14dbee2569c58cfafd7d6e
https://cdn.kernel.org/pub/linux/kernel/v5.x/ChangeLog-5.0.11
https://github.com/torvalds/linux/commit/05fd5c2c61732152a6bddc318aae62d7e436629b
Discussion:
Created kernel tracking bugs for this issue:
Affects: fedora-all [bug 1760865]
---
This was fixed for Fedora with the 5.0.11 stable
arXiv
MVD: Memory-Related Vulnerability Detection Based on Flow-Sensitive Graph Neural Networks
arxiv_fulltext·2022-03-05
MVD: Memory-Related Vulnerability Detection Based on Flow-Sensitive Graph Neural Networks
C[1]> p#1
MVD: Memory-Related Vulnerability Detection Based on Flow-Sensitive Graph Neural Networks
*Xiaobing Sun and Lili Bo are the corresponding authors.
Sicong Cao
Yangzhou University
Yangzhou
China
[email protected]
Xiaobing Sun
[1]
Yangzhou University
Yangzhou
China
[email protected]
Lili Bo
[1]
Yangzhou University
Yangzhou
China
[email protected]
Rongxin Wu
Xiamen University
Xiamen
China
[email protected]
Bin Li
Yangzhou University
Yangzhou
China
[email protected]
Chuanqi Tao
Nanjing University of Aeronautics and Astronautics
Nanjing
China
[email protected]
## Abstract
Memory-related vulnerabilities constitute severe threats to the security of modern software.
Despite the success of deep learning-based approaches to generic vulnerability detection,
they are
http://lists.opensuse.org/opensuse-security-announce/2019-09/msg00064.htmlhttp://lists.opensuse.org/opensuse-security-announce/2019-09/msg00066.htmlhttps://cdn.kernel.org/pub/linux/kernel/v5.x/ChangeLog-5.0.10https://github.com/torvalds/linux/commit/088aaf17aa79300cab14dbee2569c58cfafd7d6ehttps://security.netapp.com/advisory/ntap-20191004-0001/http://lists.opensuse.org/opensuse-security-announce/2019-09/msg00064.htmlhttp://lists.opensuse.org/opensuse-security-announce/2019-09/msg00066.htmlhttps://cdn.kernel.org/pub/linux/kernel/v5.x/ChangeLog-5.0.10https://github.com/torvalds/linux/commit/088aaf17aa79300cab14dbee2569c58cfafd7d6ehttps://security.netapp.com/advisory/ntap-20191004-0001/
2019-09-04
Published