CVE-2019-3900
published 2019-04-25CVE-2019-3900: An infinite loop issue was found in the vhost_net kernel module in Linux Kernel up to and including v5.1-rc6, while handling incoming packets in handle_rx()…
high7.7CVSS 3.1
AVNACLPRLUINSCCNINAH
An infinite loop issue was found in the vhost_net kernel module in Linux Kernel up to and including v5.1-rc6, while handling incoming packets in handle_rx(). It could occur if one end sends packets faster than the other end can process them. A guest user, maybe remote one, could use this flaw to stall the vhost_net kernel thread, resulting in a DoS scenario.
Affected
31 ranges· showing 25
| Vendor | Product | Version range | Fixed in |
|---|---|---|---|
| canonical | ubuntu_linux | — | — |
| canonical | ubuntu_linux | — | — |
| canonical | ubuntu_linux | — | — |
| debian | debian_linux | — | — |
| debian | debian_linux | — | — |
| debian | debian_linux | — | — |
| debian | linux | < linux 5.2.6-1 (bookworm) | linux 5.2.6-1 (bookworm) |
| fedoraproject | fedora | — | — |
| fedoraproject | fedora | — | — |
| fedoraproject | fedora | — | — |
| linux | linux_kernel | >= 0 < 5.2.6-1 | 5.2.6-1 |
| linux | linux_kernel | >= 0 < 5.2.6-1 | 5.2.6-1 |
| linux | linux_kernel | >= 0 < 5.2.6-1 | 5.2.6-1 |
| linux | linux_kernel | >= 0 < 5.2.6-1 | 5.2.6-1 |
| linux | linux_kernel | >= 0 < 4.4.0-161.189 | 4.4.0-161.189 |
| linux | linux_kernel | >= 0 < 4.15.0-62.69 | 4.15.0-62.69 |
| linux | linux_kernel | >= 0 < 4.15.0-60.67 | 4.15.0-60.67 |
| linux | linux_kernel | >= 2.6.34 < 3.16.72 | 3.16.72 |
| linux | linux_kernel | >= 3.17 < 4.4.191 | 4.4.191 |
| linux | linux_kernel | >= 4.10 < 4.14.133 | 4.14.133 |
| linux | linux_kernel | >= 4.15 < 4.19.64 | 4.19.64 |
| linux | linux_kernel | >= 4.20 < 5.2 | 5.2 |
| linux | linux_kernel | >= 4.5 < 4.9.190 | 4.9.190 |
| netapp | active_iq_unified_manager_for_vmware_vsphere | >= 9.5 | — |
| netapp | storage_replication_adapter_for_clustered_data_ontap_for_vmware_vsphere | >= 7.2 | — |
CVSS provenance
nvdv3.17.7HIGHCVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:C/C:N/I:N/A:H
osv7.8HIGH