CVE-2019-11833
Summary
| CVE | CVE-2019-11833 |
| State | PUBLIC |
| Assigner | [email protected] |
| Source Priority | CVE Program / NVD first with legacy fallback |
| Published | 2019-05-15 13:29:00 UTC |
| Updated | 2023-11-07 03:03:00 UTC |
| Description | fs/ext4/extents.c in the Linux kernel through 5.1.2 does not zero out the unused memory region in the extent tree block, which might allow local users to obtain sensitive information by reading uninitialized data in the filesystem. |
NVD Known Affected Configurations (CPE 2.3)
References
| Reference | Source | Link | Tags |
|---|
| USN-4069-2: Linux kernel (HWE) vulnerabilities | Ubuntu security notices | Ubuntu |
UBUNTU |
usn.ubuntu.com |
|
| Red Hat Customer Portal |
REDHAT |
access.redhat.com |
|
| Bugtraq: [SECURITY] [DSA 4465-1] linux security update |
BUGTRAQ |
seclists.org |
|
| USN-4069-1: Linux kernel vulnerabilities | Ubuntu security notices | Ubuntu |
UBUNTU |
usn.ubuntu.com |
|
| Red Hat Customer Portal |
REDHAT |
access.redhat.com |
|
| [security-announce] openSUSE-SU-2019:1570-1: important: Security update |
SUSE |
lists.opensuse.org |
|
| [security-announce] openSUSE-SU-2019:1479-1: important: Security update |
SUSE |
lists.opensuse.org |
|
| Red Hat Customer Portal |
REDHAT |
access.redhat.com |
|
| Debian -- Security Information -- DSA-4465-1 linux |
DEBIAN |
www.debian.org |
|
| USN-4095-2: Linux kernel (Xenial HWE) vulnerabilities | Ubuntu security notices | Ubuntu |
UBUNTU |
usn.ubuntu.com |
|
| [SECURITY] Fedora 29 Update: kernel-headers-5.0.19-200.fc29 - package-announce - Fedora Mailing-Lists |
|
lists.fedoraproject.org |
|
| Malformed Request |
BID |
www.securityfocus.com |
|
| USN-4118-1: Linux kernel (AWS) vulnerabilities | Ubuntu security notices | Ubuntu |
UBUNTU |
usn.ubuntu.com |
|
| USN-4076-1: Linux kernel vulnerabilities | Ubuntu security notices | Ubuntu |
UBUNTU |
usn.ubuntu.com |
|
| [SECURITY] [DLA 1823-1] linux security update |
MLIST |
lists.debian.org |
|
| USN-4068-2: Linux kernel (HWE) vulnerabilities | Ubuntu security notices | Ubuntu |
UBUNTU |
usn.ubuntu.com |
|
| Kernel Live Patch Security Notice LSN-0058-1 ≈ Packet Storm |
MISC |
packetstormsecurity.com |
|
| [SECURITY] [DLA 1824-1] linux-4.9 security update |
MLIST |
lists.debian.org |
|
| ext4: zero out the unused memory region in the extent tree block · torvalds/linux@592acbf · GitHub |
MISC |
github.com |
Patch, Third Party Advisory |
| [security-announce] openSUSE-SU-2019:1579-1: important: Security update |
SUSE |
lists.opensuse.org |
|
| [SECURITY] Fedora 29 Update: kernel-headers-5.0.19-200.fc29 - package-announce - Fedora Mailing-Lists |
FEDORA |
lists.fedoraproject.org |
|
| Red Hat Customer Portal |
REDHAT |
access.redhat.com |
|
| USN-4068-1: Linux kernel vulnerabilities | Ubuntu security notices | Ubuntu |
UBUNTU |
usn.ubuntu.com |
|
| CVE Program record |
CVE.ORG |
www.cve.org |
canonical |
| NVD vulnerability detail |
NVD |
nvd.nist.gov |
canonical, analysis |
No vendor comments have been submitted for this CVE.
Legacy QID Mappings
- 377057 Alibaba Cloud Linux Security Update for cloud-kernel (ALINUX2-SA-2019:0036)