ZeroHour

CVE-2019-11833

CVSS 3.1
5.5 medium
EPSS
<1%p49
Published
()
Modified
Description

fs/ext4/extents.c in the Linux kernel through 5.1.2 does not zero out the unused memory region in the extent tree block, which might allow local users to obtain sensitive information by reading uninitialized data in the filesystem.

Vendors
linuxfedoraprojectdebiancanonicalredhat
Products
linux kernel, fedora, debian linux, ubuntu linux, enterprise linux, enterprise linux desktop, enterprise linux eus, enterprise linux for real time, enterprise linux for real time for nfv, enterprise linux for real time for nfv tus, enterprise linux for real time tus, enterprise linux server
Weakness
CWE-908
Vector
CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:N/A:N

In the news

No ingested article mentions this CVE yet.