Beveiligingsadvies

CVE-2019-25044

CVE-kwetsbaarheidsdetails - eXtreme Datacenter Security Operations

Gepubliceerd 2021-05-14 22:57:29
Laatst bijgewerkt 2024-08-05 03:00:18
Toegewezen door mitre
CVSS-score geen score
Status PUBLISHED

Beschrijving

The block subsystem in the Linux kernel before 5.2 has a use-after-free that can lead to arbitrary code execution in the kernel context and privilege escalation, aka CID-c3e2219216c9. This is related to blk_mq_free_rqs and blk_cleanup_queue.