Free and open-source vulnerability scanner
Mageni eases for you the vulnerability scanning, assessment, and management process. It is free and open-source.
Install NowAvailable for macOS, Windows, and Linux
CVE-2019-6974
CVE information
Published
Last Modified
CVSSv2.0 Severity
CVSSv3.1 Severity
Impact Analysis
Description
In the Linux kernel before 4.20.8, kvm_ioctl_create_device in virt/kvm/kvm_main.c mishandles reference counting because of a race condition, leading to a use-after-free..
CVSSv2.0 Score
- Severity
- Medium
- Base Score
- 6.8/10
- Exploit Score
- 8.6/10
- Access Vector
- Network
- Access Complexity
- Medium
- Authentication Required
- None
- Impact Score
- 6.4/10
- Confidentiality Impact
- Partial
- Availability Impact
- Partial
- Integrity Impact
- Partial
CVSSv3.1 Score
- Severity
- High
- Base Score
- 8.1/10
- Exploit Score
- 2.2/10
- Access Vector
- Network
- Access Complexity
- High
- Privileges Required
- None
- Impact Score
- 5.9/10
- Confidentiality Impact
- High
- Availability Impact
- High
- Integrity Impact
- High
- Scope
- Unchanged
- User Interaction
- None
Products Affected
CPE | Affected | Vulnerable | Excluding | Edit |
---|---|---|---|---|
cpe:2.3:o:linux:linux_kernel:*:*:*:*:*:*:*:* |
Yes
|
4.20 | 4.20.8 | |
cpe:2.3:o:linux:linux_kernel:*:*:*:*:*:*:*:* |
Yes
|
3.10 | 3.16.64 | |
cpe:2.3:o:linux:linux_kernel:*:*:*:*:*:*:*:* |
Yes
|
3.17 | 3.18.136 | |
cpe:2.3:o:linux:linux_kernel:*:*:*:*:*:*:*:* |
Yes
|
3.19 | 4.4.176 | |
cpe:2.3:o:linux:linux_kernel:*:*:*:*:*:*:*:* |
Yes
|
4.5 | 4.9.156 | |
cpe:2.3:o:linux:linux_kernel:*:*:*:*:*:*:*:* |
Yes
|
4.10 | 4.14.99 | |
cpe:2.3:o:linux:linux_kernel:*:*:*:*:*:*:*:* |
Yes
|
4.15 | 4.19.21 | |
cpe:2.3:o:debian:debian_linux:8.0:*:*:*:*:*:*:* |
Yes
|
- | - | |
cpe:2.3:o:canonical:ubuntu_linux:16.04:*:*:*:lts:*:*:* |
Yes
|
- | - | |
cpe:2.3:o:canonical:ubuntu_linux:14.04:*:*:*:lts:*:*:* |
Yes
|
- | - | |
cpe:2.3:o:canonical:ubuntu_linux:12.04:*:*:*:esm:*:*:* |
Yes
|
- | - | |
cpe:2.3:o:canonical:ubuntu_linux:18.04:*:*:*:lts:*:*:* |
Yes
|
- | - | |
cpe:2.3:o:canonical:ubuntu_linux:18.10:*:*:*:*:*:*:* |
Yes
|
- | - | |
cpe:2.3:a:f5:big-ip_local_traffic_manager:*:*:*:*:*:*:*:* |
Yes
|
13.0.0 | - | |
cpe:2.3:a:f5:big-ip_application_acceleration_manager:*:*:*:* |
Yes
|
13.0.0 | - | |
cpe:2.3:a:f5:big-ip_advanced_firewall_manager:*:*:*:*:*:*:*: |
Yes
|
13.0.0 | - | |
cpe:2.3:a:f5:big-ip_analytics:*:*:*:*:*:*:*:* |
Yes
|
13.0.0 | - | |
cpe:2.3:a:f5:big-ip_access_policy_manager:*:*:*:*:*:*:*:* |
Yes
|
13.0.0 | - | |
cpe:2.3:a:f5:big-ip_application_security_manager:*:*:*:*:*:* |
Yes
|
13.0.0 | - | |
cpe:2.3:a:f5:big-ip_edge_gateway:*:*:*:*:*:*:*:* |
Yes
|
13.0.0 | - | |
cpe:2.3:a:f5:big-ip_fraud_protection_service:*:*:*:*:*:*:*:* |
Yes
|
13.0.0 | - | |
cpe:2.3:a:f5:big-ip_global_traffic_manager:*:*:*:*:*:*:*:* |
Yes
|
13.0.0 | - | |
cpe:2.3:a:f5:big-ip_link_controller:*:*:*:*:*:*:*:* |
Yes
|
13.0.0 | - | |
cpe:2.3:a:f5:big-ip_policy_enforcement_manager:*:*:*:*:*:*:* |
Yes
|
13.0.0 | - | |
cpe:2.3:a:f5:big-ip_webaccelerator:*:*:*:*:*:*:*:* |
Yes
|
13.0.0 | - | |
cpe:2.3:a:f5:big-ip_access_policy_manager:*:*:*:*:*:*:*:* |
Yes
|
14.0.0 | - | |
cpe:2.3:a:f5:big-ip_local_traffic_manager:*:*:*:*:*:*:*:* |
Yes
|
14.0.0 | - | |
cpe:2.3:a:f5:big-ip_advanced_firewall_manager:*:*:*:*:*:*:*: |
Yes
|
14.0.0 | - | |
cpe:2.3:a:f5:big-ip_application_acceleration_manager:*:*:*:* |
Yes
|
14.0.0 | - | |
cpe:2.3:a:f5:big-ip_analytics:*:*:*:*:*:*:*:* |
Yes
|
14.0.0 | - | |
cpe:2.3:a:f5:big-ip_edge_gateway:*:*:*:*:*:*:*:* |
Yes
|
14.0.0 | - | |
cpe:2.3:a:f5:big-ip_fraud_protection_service:*:*:*:*:*:*:*:* |
Yes
|
14.0.0 | - | |
cpe:2.3:a:f5:big-ip_global_traffic_manager:*:*:*:*:*:*:*:* |
Yes
|
14.0.0 | - | |
cpe:2.3:a:f5:big-ip_link_controller:*:*:*:*:*:*:*:* |
Yes
|
14.0.0 | - | |
cpe:2.3:a:f5:big-ip_policy_enforcement_manager:*:*:*:*:*:*:* |
Yes
|
14.0.0 | - | |
cpe:2.3:a:f5:big-ip_webaccelerator:*:*:*:*:*:*:*:* |
Yes
|
14.0.0 | - | |
cpe:2.3:a:f5:big-ip_application_security_manager:*:*:*:*:*:* |
Yes
|
14.0.0 | - | |
cpe:2.3:a:f5:big-ip_local_traffic_manager:*:*:*:*:*:*:*:* |
Yes
|
15.0.0 | 15.1.0 | |
cpe:2.3:a:f5:big-ip_application_security_manager:*:*:*:*:*:* |
Yes
|
15.0.0 | 15.1.0 | |
cpe:2.3:a:f5:big-ip_access_policy_manager:*:*:*:*:*:*:*:* |
Yes
|
15.0.0 | 15.1.0 | |
cpe:2.3:a:f5:big-ip_advanced_firewall_manager:*:*:*:*:*:*:*: |
Yes
|
15.0.0 | 15.1.0 | |
cpe:2.3:a:f5:big-ip_analytics:*:*:*:*:*:*:*:* |
Yes
|
15.0.0 | 15.1.0 | |
cpe:2.3:a:f5:big-ip_application_acceleration_manager:*:*:*:* |
Yes
|
15.0.0 | 15.1.0 | |
cpe:2.3:a:f5:big-ip_fraud_protection_service:*:*:*:*:*:*:*:* |
Yes
|
15.0.0 | 15.1.0 | |
cpe:2.3:a:f5:big-ip_global_traffic_manager:*:*:*:*:*:*:*:* |
Yes
|
15.0.0 | 15.1.0 | |
cpe:2.3:a:f5:big-ip_link_controller:*:*:*:*:*:*:*:* |
Yes
|
15.0.0 | 15.1.0 | |
cpe:2.3:a:f5:big-ip_policy_enforcement_manager:*:*:*:*:*:*:* |
Yes
|
15.0.0 | 15.1.0 | |
cpe:2.3:a:f5:big-ip_webaccelerator:*:*:*:*:*:*:*:* |
Yes
|
15.0.0 | 15.1.0 | |
cpe:2.3:a:f5:big-ip_edge_gateway:*:*:*:*:*:*:*:* |
Yes
|
15.0.0 | 15.1.0 | |
cpe:2.3:o:redhat:enterprise_linux_desktop:7.0:*:*:*:*:*:*:* |
Yes
|
- | - | |
cpe:2.3:o:redhat:enterprise_linux_workstation:7.0:*:*:*:*:*: |
Yes
|
- | - | |
cpe:2.3:o:redhat:enterprise_linux:7.0:*:*:*:*:*:*:* |
Yes
|
- | - | |
cpe:2.3:o:redhat:enterprise_linux_server:7.0:*:*:*:*:*:*:* |
Yes
|
- | - | |
cpe:2.3:o:redhat:enterprise_linux_server_aus:7.4:*:*:*:*:*:* |
Yes
|
- | - | |
cpe:2.3:o:redhat:enterprise_linux_server_tus:7.4:*:*:*:*:*:* |
Yes
|
- | - | |
cpe:2.3:o:redhat:enterprise_linux_eus:7.5:*:*:*:*:*:*:* |
Yes
|
- | - | |
cpe:2.3:o:redhat:enterprise_linux_server_tus:7.6:*:*:*:*:*:* |
Yes
|
- | - | |
cpe:2.3:o:redhat:enterprise_linux_server_eus:7.6:*:*:*:*:*:* |
Yes
|
- | - | |
cpe:2.3:o:redhat:enterprise_linux_server_aus:7.6:*:*:*:*:*:* |
Yes
|
- | - | |
cpe:2.3:a:redhat:openshift_container_platform:3.11:*:*:*:*:* |
Yes
|
- | - |
References
- https://github.com/torvalds/linux/commit/cfa39381173d5f969daf43582c95ad679189cbc9
- https://cdn.kernel.org/pub/linux/kernel/v4.x/ChangeLog-4.9.156
- https://cdn.kernel.org/pub/linux/kernel/v4.x/ChangeLog-4.20.8
- https://cdn.kernel.org/pub/linux/kernel/v4.x/ChangeLog-4.19.21
- https://cdn.kernel.org/pub/linux/kernel/v4.x/ChangeLog-4.14.99
- https://bugs.chromium.org/p/project-zero/issues/detail?id=1765
- http://git.kernel.org/cgit/linux/kernel/git/torvalds/linux.git/commit/?id=cfa39381173d5f
- https://www.exploit-db.com/exploits/46388/
- http://www.securityfocus.com/bid/107127
- https://lists.debian.org/debian-lts-announce/2019/03/msg00034.html
- https://lists.debian.org/debian-lts-announce/2019/04/msg00004.html
- https://usn.ubuntu.com/3933-2/
- https://usn.ubuntu.com/3932-2/
- https://usn.ubuntu.com/3932-1/
- https://usn.ubuntu.com/3931-2/
- https://usn.ubuntu.com/3931-1/
- https://usn.ubuntu.com/3930-2/
- https://usn.ubuntu.com/3930-1/
- https://usn.ubuntu.com/3933-1/
- https://support.f5.com/csp/article/K11186236
- https://access.redhat.com/errata/RHSA-2019:0833
- https://access.redhat.com/errata/RHSA-2019:0818
- https://lists.debian.org/debian-lts-announce/2019/05/msg00002.html
- https://access.redhat.com/errata/RHBA-2019:0959
- https://access.redhat.com/errata/RHSA-2019:2809
- https://access.redhat.com/errata/RHSA-2019:3967
- https://access.redhat.com/errata/RHSA-2020:0103
- https://support.f5.com/csp/article/K11186236?utm_source=f5support&%3Butm_medium=RSS