CVE-2019-11599
unknown
CVSS v3
—
CVSS v2
—
VIR risk
—
Description
The coredump implementation in the Linux kernel before 5.0.10 does not use locking or other mechanisms to prevent vma layout or vma flags changes while it runs, which allows local users to obtain sensitive information, cause a denial of service, or possibly have unspecified other impact by triggering a race condition with mmget_not_zero or get_task_mm calls. This is related to fs/userfaultfd.c, mm/mmap.c, fs/proc/task_mmu.c, and drivers/infiniband/core/uverbs_main.c.
Predictions
Exploit likelihood
20%
Patch ETA
—
Heuristic predictions, AS-IS, for prioritization only.
Mitigations
Vendor advisory: debian — https://security-tracker.debian.org/tracker/CVE-2019-11599
Vendor advisory: suse — https://www.suse.com/security/cve/CVE-2019-11599.html
OS impact
| OS | Version | Status | Fixed in |
|---|---|---|---|
| sles | affected | | |
| debian | bookworm | fixed | 4.19.37-1 |
| debian | bullseye | fixed | 4.19.37-1 |
| debian | forky | fixed | 4.19.37-1 |
| debian | sid | fixed | 4.19.37-1 |
| debian | trixie | fixed | 4.19.37-1 |
References
Verify integrity in audit chain (admin only). AS-IS.