In the Linux kernel 4.19.83, there is a use-after-free (read) in the debugfs_remove function in fs/debugfs/inode.c (which is used to remove a file or directory in debugfs that was previously created with a call to another debugfs function such as debugfs_create_file). NOTE: Linux kernel developers dispute this issue as not being an issue with debugfs, instead this is an issue with misuse of debugfs within blktrace
History

No history.

cve-icon MITRE

Status: PUBLISHED

Assigner: mitre

Published: 2019-12-12T19:39:10

Updated: 2024-08-05T02:25:12.647Z

Reserved: 2019-12-12T00:00:00

Link: CVE-2019-19770

cve-icon Vulnrichment

No data.

cve-icon NVD

Status : Modified

Published: 2019-12-12T20:15:17.787

Modified: 2024-08-05T03:15:36.337

Link: CVE-2019-19770

cve-icon Redhat

Severity : Moderate

Publid Date: 2019-11-29T00:00:00Z

Links: CVE-2019-19770 - Bugzilla