UBUNTU-CVE-2019-11810
Dashboard / Vulnerabilities / UBUNTU-CVE-2019-11810
UBUNTU-CVE-2019-11810
Summary:
Details: An issue was discovered in the Linux kernel before 5.0.7. A NULL pointer dereference can occur when megasas_create_frame_pool() fails in megasas_alloc_cmds() in drivers/scsi/megaraid/megaraid_sas_base.c. This causes a Denial of Service, related to a use-after-free.
References: https://ubuntu.com/security/CVE-2019-11810, https://cdn.kernel.org/pub/linux/kernel/v5.x/ChangeLog-5.0.7, https://git.kernel.org/cgit/linux/kernel/git/torvalds/linux.git/commit/?id=bcf3b67d16a4c8ffae0aa79de5853435e683945c, https://ubuntu.com/security/notices/USN-4005-1, https://ubuntu.com/security/notices/USN-4008-1, https://ubuntu.com/security/notices/USN-4008-3, https://ubuntu.com/security/notices/USN-4115-1, https://ubuntu.com/security/notices/USN-4118-1, https://www.cve.org/CVERecord?id=CVE-2019-11810
Affected packages
Package
Name: linux-aws
Purl: pkg:deb/ubuntu/linux-aws?arch=source&distro=trusty%2Fesm
Affected ranges
Type: ECOSYSTEM
Events:
