CVE-2019-8912
CVSS v3.1
7.8 (High)
CVSS v2.0
7.2 (High)
EPSS
0.07 % (33th)
Affected Products
4
Advisories
43
In the Linux kernel through 4.20.11, af_alg_release() in crypto/af_alg.c neglects to set a NULL value for a certain structure member, which leads to a use-after-free in sockfs_setattr.
Weaknesses
- CWE-416
- Use After Free
- CVE Status
- PUBLISHED
- CNA
- MITRE
- Published Date
-
2019-02-18 18:29:00
(5 years ago) - Updated Date
-
2021-06-02 15:36:58
(3 years ago)
Affected Products
Loading...
Loading...
Configuration #1
|
Configuration #2
|
Configuration #3
|
Configuration #4
|
Loading...
Loading...
Loading...
Loading...
Loading...
Loading...
Loading...
Loading...