In the Linux kernel 5.0.21 and 5.3.11, mounting a crafted btrfs filesystem image, performing some operations, and then making a syncfs system call can lead to a use-after-free in try_merge_free_space in fs/btrfs/free-space-cache.c because the pointer to a left data structure can be the same as the pointer to a right data structure.
Project Subscriptions
| Vendors | Products |
|---|---|
|
Canonical
Subscribe
|
Ubuntu Linux
Subscribe
|
|
Debian
Subscribe
|
Debian Linux
Subscribe
|
|
Linux
Subscribe
|
Linux Kernel
Subscribe
|
|
Netapp
Subscribe
|
A700s
Subscribe
A700s Firmware
Subscribe
Active Iq Unified Manager
Subscribe
Aff 8300
Subscribe
Aff 8300 Firmware
Subscribe
Aff 8700
Subscribe
Aff 8700 Firmware
Subscribe
Aff A400
Subscribe
Aff A400 Firmware
Subscribe
Cloud Backup
Subscribe
Data Availability Services
Subscribe
Fas 8300
Subscribe
Fas 8300 Firmware
Subscribe
Fas 8700
Subscribe
Fas 8700 Firmware
Subscribe
Fas A400
Subscribe
Fas A400 Firmware
Subscribe
H610s
Subscribe
H610s Firmware
Subscribe
Hci Management Node
Subscribe
Solidfire
Subscribe
Solidfire Baseboard Management Controller
Subscribe
Solidfire Baseboard Management Controller Firmware
Subscribe
Steelstore Cloud Integrated Storage
Subscribe
|
Advisories
| Source | ID | Title |
|---|---|---|
Debian DLA |
DLA-2385-1 | linux-4.19 security update |
Debian DLA |
DLA-2420-1 | linux security update |
Debian DLA |
DLA-2420-2 | linux regression update |
EUVD |
EUVD-2019-9069 | In the Linux kernel 5.0.21 and 5.3.11, mounting a crafted btrfs filesystem image, performing some operations, and then making a syncfs system call can lead to a use-after-free in try_merge_free_space in fs/btrfs/free-space-cache.c because the pointer to a left data structure can be the same as the pointer to a right data structure. |
Ubuntu USN |
USN-4578-1 | Linux kernel vulnerabilities |
Fixes
Solution
No solution given by the vendor.
Workaround
No workaround given by the vendor.
References
History
No history.
Projects
Sign in to view the affected projects.
Status: PUBLISHED
Assigner: mitre
Published:
Updated: 2024-08-05T02:16:47.095Z
Reserved: 2019-11-29T00:00:00
Link: CVE-2019-19448
No data.
Status : Modified
Published: 2019-12-08T02:15:09.907
Modified: 2024-11-21T04:34:45.167
Link: CVE-2019-19448
OpenCVE Enrichment
No data.
Weaknesses
Debian DLA
EUVD
Ubuntu USN