CVE-2019-11833
—CVSS 3.1
5.5 medium
EPSS
<1%p49
Published
()
Modified
Description
fs/ext4/extents.c in the Linux kernel through 5.1.2 does not zero out the unused memory region in the extent tree block, which might allow local users to obtain sensitive information by reading uninitialized data in the filesystem.
- Vendors
- linuxfedoraprojectdebiancanonicalredhat
- Products
- linux kernel, fedora, debian linux, ubuntu linux, enterprise linux, enterprise linux desktop, enterprise linux eus, enterprise linux for real time, enterprise linux for real time for nfv, enterprise linux for real time for nfv tus, enterprise linux for real time tus, enterprise linux server
- Weakness
- CWE-908
- Vector
- CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:N/A:N
In the news0 stories
No ingested article mentions this CVE yet.