UBUNTU-CVE-2019-11683
Dashboard / Vulnerabilities / UBUNTU-CVE-2019-11683
UBUNTU-CVE-2019-11683
Summary:
Details: udp_gro_receive_segment in net/ipv4/udp_offload.c in the Linux kernel 5.x before 5.0.13 allows remote attackers to cause a denial of service (slab-out-of-bounds memory corruption) or possibly have unspecified other impact via UDP packets with a 0 payload, because of mishandling of padded packets, aka the "GRO packet of death" issue.
References: https://ubuntu.com/security/CVE-2019-11683, http://www.openwall.com/lists/oss-security/2019/05/02/1, https://git.kernel.org/linus/4dd2b82d5adfbe0b1587ccad7a8f76d826120f37, https://www.spinics.net/lists/netdev/msg568315.html, https://ubuntu.com/security/notices/USN-3979-1, https://www.cve.org/CVERecord?id=CVE-2019-11683
Affected packages
Package
Name: linux
Purl: pkg:deb/ubuntu/linux?arch=source&distro=esm-infra-legacy%2Ftrusty
Affected ranges
Type: ECOSYSTEM
Events:
