cbcvebase.
CVE-2019-7221
published 2019-03-21

CVE-2019-7221: The KVM implementation in the Linux kernel through 4.20.5 has a Use-after-Free.

high7.8CVSS 3.0
AVLACLPRLUINSUCHIHAH
The KVM implementation in the Linux kernel through 4.20.5 has a Use-after-Free.

Affected

24 ranges
VendorProductVersion rangeFixed in
canonicalubuntu_linux
canonicalubuntu_linux
canonicalubuntu_linux
canonicalubuntu_linux
debiandebian_linux
debianlinux< linux 4.19.20-1 (bookworm)linux 4.19.20-1 (bookworm)
fedoraprojectfedora
fedoraprojectfedora
linuxlinux_kernel<= 4.20.5
linuxlinux_kernel>= 0 < 4.19.20-14.19.20-1
linuxlinux_kernel>= 0 < 4.19.20-14.19.20-1
linuxlinux_kernel>= 0 < 4.19.20-14.19.20-1
linuxlinux_kernel>= 0 < 4.19.20-14.19.20-1
linuxlinux_kernel>= 0 < 4.4.0-145.1714.4.0-145.171
linuxlinux_kernel>= 0 < 4.15.0-47.504.15.0-47.50
opensuseleap
redhatenterprise_linux
redhatenterprise_linux_desktop
redhatenterprise_linux_server
redhatenterprise_linux_server_aus
redhatenterprise_linux_server_eus
redhatenterprise_linux_server_tus
redhatenterprise_linux_workstation
redhatopenshift_container_platform

CVSS provenance

nvdv3.07.8HIGHCVSS:3.0/AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H
osv7.8HIGH