UBUNTU-CVE-2019-13648
Dashboard / Vulnerabilities / UBUNTU-CVE-2019-13648
UBUNTU-CVE-2019-13648
Summary:
Details: In the Linux kernel through 5.2.1 on the powerpc platform, when hardware transactional memory is disabled, a local user can cause a denial of service (TM Bad Thing exception and system crash) via a sigreturn() system call that sends a crafted signal frame. This affects arch/powerpc/kernel/signal_32.c and arch/powerpc/kernel/signal_64.c.
References: https://ubuntu.com/security/CVE-2019-13648, https://patchwork.ozlabs.org/patch/1133904/, https://ubuntu.com/security/notices/USN-4114-1, https://ubuntu.com/security/notices/USN-4115-1, https://ubuntu.com/security/notices/USN-4116-1, https://www.cve.org/CVERecord?id=CVE-2019-13648
Affected packages
Package
Name: linux-aws
Purl: pkg:deb/ubuntu/linux-aws?arch=source&distro=trusty%2Fesm
Affected ranges
Type: ECOSYSTEM
Events:
