CVE-2019-19448
Summary
| CVE | CVE-2019-19448 |
| State | PUBLIC |
| Assigner | [email protected] |
| Source Priority | CVE Program / NVD first with legacy fallback |
| Published | 2019-12-08 02:15:00 UTC |
| Updated | 2023-10-03 15:39:00 UTC |
| Description | In the Linux kernel 5.0.21 and 5.3.11, mounting a crafted btrfs filesystem image, performing some operations, and then making a syncfs system call can lead to a use-after-free in try_merge_free_space in fs/btrfs/free-space-cache.c because the pointer to a left data structure can be the same as the pointer to a right data structure. |
NVD Known Affected Configurations (CPE 2.3)
References
| Reference | Source | Link | Tags |
|---|
| USN-4578-1: Linux kernel vulnerabilities | Ubuntu security notices | Ubuntu |
UBUNTU |
usn.ubuntu.com |
|
| [SECURITY] [DLA 2420-2] linux regression update |
MLIST |
lists.debian.org |
|
| [SECURITY] [DLA 2385-1] linux-4.19 security update |
MLIST |
lists.debian.org |
|
| December 2019 Linux Kernel Vulnerabilities in NetApp Products | NetApp Product Security |
CONFIRM |
security.netapp.com |
|
| CVE/CVE-2019-19448 at master · bobfuzzer/CVE · GitHub |
MISC |
github.com |
Exploit, Third Party Advisory |
| [SECURITY] [DLA 2420-1] linux security update |
MLIST |
lists.debian.org |
|
| CVE Program record |
CVE.ORG |
www.cve.org |
canonical |
| NVD vulnerability detail |
NVD |
nvd.nist.gov |
canonical, analysis |
No vendor comments have been submitted for this CVE.
Legacy QID Mappings
- 159403 Oracle Enterprise Linux Security Update for Unbreakable Enterprise kernel (ELSA-2021-9459)
- 353100 Amazon Linux Security Advisory for kernel : ALAC2012-2021-024
- 353101 Amazon Linux Security Advisory for kmod-mlx5 : ALAC2012-2021-025
- 353102 Amazon Linux Security Advisory for kmod-sfc : ALAC2012-2021-026
- 353135 Amazon Linux Security Advisory for kernel : ALAS2KERNEL-5.4-2022-016
- 390248 Oracle Managed Virtualization (VM) Server for x86 Security Update for kernel (OVMSA-2021-0035)
- 6140313 AWS Bottlerocket Security Update for kernel (GHSA-2x98-8pvc-86c5)