Description
The do_hidp_sock_ioctl function in net/bluetooth/hidp/sock.c in the Linux kernel before 5.0.15 allows a local user to obtain potentially sensitive information from kernel stack memory via a HIDPCONNADD command, because a name field may not end with a '\0' character.
No analysis available yet.
Remediation
No remediation available yet.
Tracking
Sign in to view the affected projects.
Advisories
| Source | ID | Title |
|---|---|---|
Debian DLA |
DLA-1823-1 | linux security update |
Debian DLA |
DLA-1824-1 | linux-4.9 security update |
Debian DSA |
DSA-4465-1 | linux security update |
EUVD |
EUVD-2019-3542 | The do_hidp_sock_ioctl function in net/bluetooth/hidp/sock.c in the Linux kernel before 5.0.15 allows a local user to obtain potentially sensitive information from kernel stack memory via a HIDPCONNADD command, because a name field may not end with a '\0' character. |
Ubuntu USN |
USN-4068-1 | Linux kernel vulnerabilities |
Ubuntu USN |
USN-4068-2 | Linux kernel (HWE) vulnerabilities |
Ubuntu USN |
USN-4069-1 | Linux kernel vulnerabilities |
Ubuntu USN |
USN-4069-2 | Linux kernel (HWE) vulnerabilities |
Ubuntu USN |
USN-4076-1 | Linux kernel vulnerabilities |
Ubuntu USN |
USN-4118-1 | Linux kernel (AWS) vulnerabilities |
References
History
No history.
Subscriptions
Canonical
Subscribe
Ubuntu Linux
Subscribe
Debian
Subscribe
Debian Linux
Subscribe
Fedoraproject
Subscribe
Fedora
Subscribe
Linux
Subscribe
Linux Kernel
Subscribe
Opensuse
Subscribe
Leap
Subscribe
Redhat
Subscribe
Enterprise Linux
Subscribe
Enterprise Linux Eus
Subscribe
Enterprise Linux For Real Time
Subscribe
Enterprise Linux For Real Time For Nfv Tus
Subscribe
Enterprise Linux For Real Time Tus
Subscribe
Enterprise Linux Server Aus
Subscribe
Enterprise Linux Server Tus
Subscribe
Rhel Extras Rt
Subscribe
Status: PUBLISHED
Assigner: mitre
Published:
Updated: 2024-08-04T23:10:29.234Z
Reserved: 2019-05-10T00:00:00.000Z
Link: CVE-2019-11884
No data.
Status : Modified
Published: 2019-05-10T22:29:00.627
Modified: 2024-11-21T04:21:57.123
Link: CVE-2019-11884
OpenCVE Enrichment
No data.
Weaknesses
Debian DLA
Debian DSA
EUVD
Ubuntu USN