cbcvebase.
CVE-2019-5489
published 2019-01-07

CVE-2019-5489: The mincore() implementation in mm/mincore.c in the Linux kernel through 4.19.13 allowed local attackers to observe page cache access patterns of other…

PriorityP425medium5.5CVSS 3.0
AVLACLPRLUINSUCHINAN
EPSS
0.77%
52.2th percentile
The mincore() implementation in mm/mincore.c in the Linux kernel through 4.19.13 allowed local attackers to observe page cache access patterns of other processes on the same system, potentially allowing sniffing of secret information. (Fixing this affects the output of the fincore program.) Limited remote exploitation may be possible, as demonstrated by latency differences in accessing public files from an Apache HTTP Server.

Affected

6 ranges
VendorProductVersion rangeFixed in
debianlinux< linux 4.19.37-4 (bookworm)linux 4.19.37-4 (bookworm)
linuxlinux_kernel<= 4.19.13
linuxlinux_kernel>= 0 < 4.19.37-44.19.37-4
linuxlinux_kernel>= 0 < 4.19.37-44.19.37-4
linuxlinux_kernel>= 0 < 4.19.37-44.19.37-4
linuxlinux_kernel>= 0 < 4.19.37-44.19.37-4

CVSS provenance

nvdv3.05.5MEDIUMCVSS:3.0/AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:N/A:N
nvdv2.02.1LOWAV:L/AC:L/Au:N/C:P/I:N/A:N
osv5.5MEDIUM
vendor_debian5.5MEDIUM
vendor_redhat5.5MEDIUM
vendor_oracle3.5MEDIUM
Stop checking back — get the weekly exploitation signal.

Every Monday: what got weaponized or added to CISA KEV in the last seven days — each CVE cross-linked to its PoC, Nuclei template, and detection rule. Free, one email a week, unsubscribe in one click.