Description
A backporting error was discovered in the Linux stable/longterm kernel 4.4.x through 4.4.190, 4.9.x through 4.9.190, 4.14.x through 4.14.141, 4.19.x through 4.19.69, and 5.2.x through 5.2.11. Misuse of the upstream "x86/ptrace: Fix possible spectre-v1 in ptrace_get_debugreg()" commit reintroduced the Spectre vulnerability that it aimed to eliminate. This occurred because the backport process depends on cherry picking specific commits, and because two (correctly ordered) code lines were swapped.
No analysis available yet.
Remediation
No remediation available yet.
Tracking
Sign in to view the affected projects.
Advisories
| Source | ID | Title |
|---|---|---|
Debian DLA |
DLA-1940-1 | linux-4.9 security update |
Debian DSA |
DSA-4531-1 | linux security update |
EUVD |
EUVD-2019-6812 | A backporting error was discovered in the Linux stable/longterm kernel 4.4.x through 4.4.190, 4.9.x through 4.9.190, 4.14.x through 4.14.141, 4.19.x through 4.19.69, and 5.2.x through 5.2.11. Misuse of the upstream "x86/ptrace: Fix possible spectre-v1 in ptrace_get_debugreg()" commit reintroduced the Spectre vulnerability that it aimed to eliminate. This occurred because the backport process depends on cherry picking specific commits, and because two (correctly ordered) code lines were swapped. |
Ubuntu USN |
USN-4157-1 | Linux kernel vulnerabilities |
Ubuntu USN |
USN-4157-2 | Linux kernel (HWE) vulnerabilities |
Ubuntu USN |
USN-4162-1 | Linux kernel vulnerabilities |
Ubuntu USN |
USN-4162-2 | Linux kernel (Azure) vulnerabilities |
Ubuntu USN |
USN-4163-1 | Linux kernel vulnerabilities |
Ubuntu USN |
USN-4163-2 | Linux kernel (Xenial HWE) vulnerabilities |
References
History
No history.
Subscriptions
Debian
Subscribe
Debian Linux
Subscribe
Linux
Subscribe
Linux Kernel
Subscribe
Netapp
Subscribe
Active Iq Performance Analytics Services
Subscribe
Baseboard Management Controller
Subscribe
Baseboard Management Controller Firmware
Subscribe
Service Processor
Subscribe
Opensuse
Subscribe
Leap
Subscribe
Status: PUBLISHED
Assigner: mitre
Published:
Updated: 2024-08-05T01:03:32.281Z
Reserved: 2019-09-04T00:00:00.000Z
Link: CVE-2019-15902
No data.
Status : Modified
Published: 2019-09-04T06:15:10.780
Modified: 2024-11-21T04:29:42.037
Link: CVE-2019-15902
OpenCVE Enrichment
No data.
Debian DLA
Debian DSA
EUVD
Ubuntu USN