CVE-2019-12380
Summary
| CVE | CVE-2019-12380 |
| State | PUBLIC |
| Assigner | [email protected] |
| Source Priority | CVE Program / NVD first with legacy fallback |
| Published | 2019-05-28 03:29:00 UTC |
| Updated | 2023-11-07 03:03:00 UTC |
| Description | **DISPUTED** An issue was discovered in the efi subsystem in the Linux kernel through 5.1.5. phys_efi_set_virtual_address_map in arch/x86/platform/efi/efi.c and efi_call_phys_prolog in arch/x86/platform/efi/efi_64.c mishandle memory allocation failures. NOTE: This id is disputed as not being an issue because “All the code touched by the referenced commit runs only at boot, before any user processes are started. Therefore, there is no possibility for an unprivileged user to control it.”. |
NVD Known Affected Configurations (CPE 2.3)
| Type | Vendor | Product | Version | Update | Edition | Language |
|---|
| Operating System |
Linux |
Linux Kernel |
All |
All |
All |
All |
References
| Reference | Source | Link | Tags |
|---|
| [SECURITY] Fedora 29 Update: kernel-headers-5.1.6-200.fc29 - package-announce - Fedora Mailing-Lists |
|
lists.fedoraproject.org |
|
| [security-announce] openSUSE-SU-2019:1570-1: important: Security update |
SUSE |
lists.opensuse.org |
|
| kernel/git/tip/tip.git - Unnamed repository; edit this file 'description' to name the repository. |
MISC |
git.kernel.org |
Mailing List, Patch, Vendor Advisory |
| [SECURITY] Fedora 30 Update: kernel-headers-5.1.7-300.fc30 - package-announce - Fedora Mailing-Lists |
|
lists.fedoraproject.org |
|
| June 2019 Linux Kernel Vulnerabilities in NetApp Products | NetApp Product Security |
CONFIRM |
security.netapp.com |
|
| Linux Kernel CVE-2019-12380 Multiple Denial of Service Vulnerabilities |
BID |
www.securityfocus.com |
Third Party Advisory, VDB Entry |
| [SECURITY] Fedora 30 Update: kernel-headers-5.1.7-300.fc30 - package-announce - Fedora Mailing-Lists |
FEDORA |
lists.fedoraproject.org |
|
| USN-4439-1: Linux kernel vulnerabilities | Ubuntu security notices | Ubuntu |
UBUNTU |
usn.ubuntu.com |
|
| [SECURITY] Fedora 29 Update: kernel-headers-5.1.6-200.fc29 - package-announce - Fedora Mailing-Lists |
FEDORA |
lists.fedoraproject.org |
|
| USN-4427-1: Linux kernel vulnerabilities | Ubuntu security notices | Ubuntu |
UBUNTU |
usn.ubuntu.com |
|
| [security-announce] openSUSE-SU-2019:1579-1: important: Security update |
SUSE |
lists.opensuse.org |
|
| [security-announce] openSUSE-SU-2019:1571-1: important: Security update |
SUSE |
lists.opensuse.org |
|
| USN-4414-1: Linux kernel vulnerabilities | Ubuntu security notices | Ubuntu |
UBUNTU |
usn.ubuntu.com |
|
| CVE Program record |
CVE.ORG |
www.cve.org |
canonical |
| NVD vulnerability detail |
NVD |
nvd.nist.gov |
canonical, analysis |
No vendor comments have been submitted for this CVE.
Legacy QID Mappings
- 376882 Alibaba Cloud Linux Security Update for cloud-kernel (ALINUX2-SA-2019:0121)