UBUNTU-CVE-2019-14896
Dashboard / Vulnerabilities / UBUNTU-CVE-2019-14896
UBUNTU-CVE-2019-14896
Summary:
Details: A heap-based buffer overflow vulnerability was found in the Linux kernel, version kernel-2.6.32, in Marvell WiFi chip driver. A remote attacker could cause a denial of service (system crash) or, possibly execute arbitrary code, when the lbs_ibss_join_existing function is called after a STA connects to an AP.
References: https://ubuntu.com/security/CVE-2019-14896, https://seclists.org/oss-sec/2019/q4/95, https://lore.kernel.org/linux-wireless/[email protected]/T/#u, https://ubuntu.com/security/notices/USN-4225-1, https://ubuntu.com/security/notices/USN-4226-1, https://ubuntu.com/security/notices/USN-4227-1, https://ubuntu.com/security/notices/USN-4228-1, https://ubuntu.com/security/notices/USN-4227-2, https://ubuntu.com/security/notices/USN-4228-2, https://ubuntu.com/security/notices/USN-4225-2, https://www.cve.org/CVERecord?id=CVE-2019-14896
Affected packages
Package
Name: linux-aws
Purl: pkg:deb/ubuntu/linux-aws?arch=source&distro=trusty%2Fesm
Affected ranges
Type: ECOSYSTEM
Events:
