CVE-2019-3459
Severity
6.5MEDIUM
EPSS
0.5%
top 35.66%
CISA KEV
Not in KEV
Exploit
No known exploits
Affected products
Timeline
PublishedApr 11
Latest updateApr 30
Description
A heap address information leak while using L2CAP_GET_CONF_OPT was discovered in the Linux kernel before 5.1-rc1.
CVSS vector
CVSS:3.1/AV:A/AC:L/PR:N/UI:N/S:U/C:H/I:N/A:NExploitability: 2.8 | Impact: 3.6
Affected Packages8 packages
Also affects: Debian Linux 8.0, Ubuntu Linux 14.04, 16.04, 18.04, 18.10, Enterprise Linux 5.0, 6.0, 7.0, 8.0, 8.1, 8.2, 8.4, 7, 8
Patches
🔴Vulnerability Details
4GHSA▶
GHSA-mxj7-853v-cxhh: A heap address information leak while using L2CAP_GET_CONF_OPT was discovered in the Linux kernel before 5↗2022-04-30
CVEList▶
CVE-2019-3459: A heap address information leak while using L2CAP_GET_CONF_OPT was discovered in the Linux kernel before 5↗2019-04-11
OSV▶
CVE-2019-3459: A heap address information leak while using L2CAP_GET_CONF_OPT was discovered in the Linux kernel before 5↗2019-04-11