ZeroHour

CVE-2019-12615

CVSS 3.1
7.5 high
EPSS
4%p89
Published
()
Modified
Description

An issue was discovered in get_vdev_port_node_info in arch/sparc/kernel/mdesc.c in the Linux kernel through 5.1.6. There is an unchecked kstrdup_const of node_info->vdev_port.name, which might allow an attacker to cause a denial of service (NULL pointer dereference and system crash).

Vendors
linuxnetapp
Products
linux kernel, aff a700s firmware, active iq unified manager, hci management node, solidfire, cn1610 firmware, h610s firmware
Weakness
CWE-476
Vector
CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:H

In the news

No ingested article mentions this CVE yet.