imPC@ndo IT

Tracker / CVE-2019-14896

CVE-2019-14896

Critical 9.8

A heap-based buffer overflow vulnerability was found in the Linux kernel, version kernel-2.6.32, in Marvell WiFi chip driver. A remote attacker could cause a denial of service (system crash) or, possibly execute arbitrary code, when the lbs_ibss_join_existing function is called after a STA connects to an AP.

Affected products and versions

canonical ubuntu_linux
debian debian_linux
fedoraproject fedora
linux linux_kernel · 2.6.32 → 3.16.83
linux linux_kernel · 3.17 → 4.4.212
linux linux_kernel · 4.10 → 4.14.169
linux linux_kernel · 4.15 → 4.19.100
linux linux_kernel · 4.20 → 5.4.16
linux linux_kernel · 4.5 → 4.9.212
redhat enterprise_linux

Analysis

This page is not indexable yet.Until it carries original analysis — what it actually exposes, how to check in two minutes whether a system was touched, what to do if it was — the page stays noindex. The database decides that, not the template.

References