Executive Summary



This Alert is flagged as TOP 25 Common Weakness Enumeration from CWE/SANS. For more information, you can read this.
Informations
NameCVE-2019-7308First vendor Publication2019-02-01
VendorCveLast vendor Modification2019-04-18

Security-Database Scoring CVSS v2

Cvss vector : (AV:L/AC:M/Au:N/C:C/I:N/A:N)
Cvss Base Score4.7Attack RangeLocal
Cvss Impact Score6.9Attack ComplexityMedium
Cvss Expoit Score3.4AuthenticationNone Required
Calculate full CVSS 2.0 Vectors scores

Detail

kernel/bpf/verifier.c in the Linux kernel before 4.20.6 performs undesirable out-of-bounds speculation on pointer arithmetic in various cases, including cases of different branches with different state or limits to sanitize, leading to side-channel attacks.

Original Source

Url : http://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2019-7308

CWE : Common Weakness Enumeration

%idName
100 %CWE-189Numeric Errors (CWE/SANS Top 25)

CPE : Common Platform Enumeration

TypeDescriptionCount
Os4
Os2730
Os1

Sources (Detail)

SourceUrl
BID http://www.securityfocus.com/bid/106827
MISC http://git.kernel.org/cgit/linux/kernel/git/torvalds/linux.git/commit/?id=979...
http://git.kernel.org/cgit/linux/kernel/git/torvalds/linux.git/commit/?id=d3b...
https://bugs.chromium.org/p/project-zero/issues/detail?id=1711
https://cdn.kernel.org/pub/linux/kernel/v4.x/ChangeLog-4.20.6
https://github.com/torvalds/linux/commit/979d63d50c0c0f7bc537bf821e056cc9fe5a...
https://github.com/torvalds/linux/commit/d3bd7413e0ca40b60cf60d4003246d067caf...
SUSE http://lists.opensuse.org/opensuse-security-announce/2019-04/msg00052.html
UBUNTU https://usn.ubuntu.com/3930-1/
https://usn.ubuntu.com/3930-2/
https://usn.ubuntu.com/3931-1/
https://usn.ubuntu.com/3931-2/

Alert History

If you want to see full details history, please login or register.
0
1
2
3
4
5
6
7
8
9
10
11
12
13
DateInformations
2019-05-11 12:09:44
  • Multiple Updates
2019-04-23 21:19:22
  • Multiple Updates
2019-04-23 05:18:36
  • Multiple Updates
2019-04-23 01:01:59
  • Multiple Updates
2019-04-22 21:19:23
  • Multiple Updates
2019-04-20 00:19:15
  • Multiple Updates
2019-04-18 21:19:12
  • Multiple Updates
2019-04-12 17:19:18
  • Multiple Updates
2019-04-05 00:19:09
  • Multiple Updates
2019-04-03 09:19:33
  • Multiple Updates
2019-03-16 12:09:16
  • Multiple Updates
2019-02-21 12:07:37
  • Multiple Updates
2019-02-05 17:19:30
  • Multiple Updates
2019-02-02 00:19:18
  • First insertion