CVE-2019-18814
published 2019-11-07CVE-2019-18814: An issue was discovered in the Linux kernel through 5.3.9. There is a use-after-free when aa_label_parse() fails in aa_audit_rule_init() in…
PriorityP341critical9.8CVSS 3.1
AVNACLPRNUINSUCHIHAH
EPSS
2.50%
83.1th percentile
An issue was discovered in the Linux kernel through 5.3.9. There is a use-after-free when aa_label_parse() fails in aa_audit_rule_init() in security/apparmor/audit.c.
Affected
6 ranges
| Vendor | Product | Version range | Fixed in |
|---|---|---|---|
| debian | linux | < linux 5.7.6-1 (bookworm) | linux 5.7.6-1 (bookworm) |
| linux | linux_kernel | <= 5.3.9 | — |
| linux | linux_kernel | >= 0 < 5.7.6-1 | 5.7.6-1 |
| linux | linux_kernel | >= 0 < 5.7.6-1 | 5.7.6-1 |
| linux | linux_kernel | >= 0 < 5.7.6-1 | 5.7.6-1 |
| linux | linux_kernel | >= 0 < 5.7.6-1 | 5.7.6-1 |
CVSS provenance
nvdv3.19.8CRITICALCVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H
nvdv2.07.5HIGHAV:N/AC:L/Au:N/C:P/I:P/A:P
osv9.8CRITICAL
vendor_debian9.8CRITICAL
vendor_redhat9.8CRITICAL
Stop checking back — get the weekly exploitation signal.
Every Monday: what got weaponized or added to CISA KEV in the last seven days — each CVE cross-linked to its PoC, Nuclei template, and detection rule. Free, one email a week, unsubscribe in one click.
GHSA
GHSA-hwp9-jjvp-p4vg: An issue was discovered in the Linux kernel through 5
ghsa_unreviewed·2022-05-24
CVE-2019-18814 [HIGH] GHSA-hwp9-jjvp-p4vg: An issue was discovered in the Linux kernel through 5
An issue was discovered in the Linux kernel through 5.3.9. There is a use-after-free when aa_label_parse() fails in aa_audit_rule_init() in security/apparmor/audit.c.
OSV
CVE-2019-18814: An issue was discovered in the Linux kernel through 5
osv·2019-11-07·CVSS 9.8
CVE-2019-18814 [CRITICAL] CVE-2019-18814: An issue was discovered in the Linux kernel through 5
An issue was discovered in the Linux kernel through 5.3.9. There is a use-after-free when aa_label_parse() fails in aa_audit_rule_init() in security/apparmor/audit.c.
Red Hat
kernel: use-after-free in aa_audit_rule_init() in security/apparmor/audit.c
vendor_redhat·2019-11-07·CVSS 9.8
CVE-2019-18814 [CRITICAL] CWE-416 kernel: use-after-free in aa_audit_rule_init() in security/apparmor/audit.c
kernel: use-after-free in aa_audit_rule_init() in security/apparmor/audit.c
An issue was discovered in the Linux kernel through 5.3.9. There is a use-after-free when aa_label_parse() fails in aa_audit_rule_init() in security/apparmor/audit.c.
Package: kernel (Red Hat Enterprise Linux 5) - Not affected
Package: kernel (Red Hat Enterprise Linux 6) - Not affected
Package: kernel (Red Hat Enterprise Linux 7) - Not affected
Package: kernel-alt (Red Hat Enterprise Linux 7) - Not affected
Package: kernel-rt (Red Hat Enterprise Linux 7) - Not affected
Package: kernel (Red Hat Enterprise Linux 8) - Not affected
Package: kernel-rt (Red Hat Enterprise Linux 8) - Not affected
Package: kernel (Red Hat Enterprise MRG 2) - Not affected
Debian
CVE-2019-18814: linux - An issue was discovered in the Linux kernel through 5.3.9. There is a use-after-...
vendor_debian·2019·CVSS 9.8
CVE-2019-18814 [CRITICAL] CVE-2019-18814: linux - An issue was discovered in the Linux kernel through 5.3.9. There is a use-after-...
An issue was discovered in the Linux kernel through 5.3.9. There is a use-after-free when aa_label_parse() fails in aa_audit_rule_init() in security/apparmor/audit.c.
Scope: local
bookworm: resolved (fixed in 5.7.6-1)
bullseye: resolved (fixed in 5.7.6-1)
forky: resolved (fixed in 5.7.6-1)
sid: resolved (fixed in 5.7.6-1)
trixie: resolved (fixed in 5.7.6-1)
No detection rules found.
No public exploits indexed.
Bugzilla
CVE-2019-18814 kernel: use-after-free in aa_audit_rule_init() in security/apparmor/audit.c [fedora-all]
bugzilla·2019-11-14·CVSS 9.8
CVE-2019-18814 [CRITICAL] CVE-2019-18814 kernel: use-after-free in aa_audit_rule_init() in security/apparmor/audit.c [fedora-all]
CVE-2019-18814 kernel: use-after-free in aa_audit_rule_init() in security/apparmor/audit.c [fedora-all]
This is an automatically created tracking bug! It was created to ensure
that one or more security vulnerabilities are fixed in affected versions
of fedora-all.
For comments that are specific to the vulnerability please use bugs filed
against the "Security Response" product referenced in the "Blocks" field.
For more information see:
http://fedoraproject.org/wiki/Security/TrackingBugs
When submitting as an update, use the fedpkg template provided in the next
comment(s). This will include the bug IDs of this tracking bug as well as
the relevant top-level CVE bugs.
Please also mention the CVE IDs being fixed in the RPM changelog and the
fedpkg commit message.
NOTE: this issue affects m
Bugzilla
CVE-2019-18814 kernel: use-after-free in aa_audit_rule_init() in security/apparmor/audit.c
bugzilla·2019-11-14·CVSS 9.8
CVE-2019-18814 [CRITICAL] CVE-2019-18814 kernel: use-after-free in aa_audit_rule_init() in security/apparmor/audit.c
CVE-2019-18814 kernel: use-after-free in aa_audit_rule_init() in security/apparmor/audit.c
A vulnerability was found in in the Linux kernel. There is a use-after-free when aa_label_parse() fails in aa_audit_rule_init() in security/apparmor/audit.c.
Reference:
https://lore.kernel.org/patchwork/patch/1142523/
Discussion:
Created kernel tracking bugs for this issue:
Affects: fedora-all [bug 1772519]
---
Fedora does not enable App Armor
https://lists.debian.org/debian-lts-announce/2020/08/msg00019.htmlhttps://lore.kernel.org/patchwork/patch/1142523/https://security.netapp.com/advisory/ntap-20191205-0001/https://support.f5.com/csp/article/K21561554?utm_source=f5support&%3Butm_medium=RSShttps://lists.debian.org/debian-lts-announce/2020/08/msg00019.htmlhttps://lore.kernel.org/patchwork/patch/1142523/https://security.netapp.com/advisory/ntap-20191205-0001/https://support.f5.com/csp/article/K21561554?utm_source=f5support&%3Butm_medium=RSS
2019-11-07
Published