CVE-2019-11811 PUBLISHED

An issue was discovered in the Linux kernel before 5.0.4. There is a use-after-free upon attempted read access to /proc/ioports after the ipmi_si module is removed, related to drivers/char/ipmi/ipmi_si_intf.c, drivers/char/ipmi/ipmi_si_mem_io.c, and drivers/char/ipmi/ipmi_si_port_io.c.

EPSS 0.07% · 21.2th percentile

Risk Scores

EPSS Score
0.07%
21.2th percentile

Affected Products

VendorProductVersions
Ubuntu:Pro:14.04:LTSlinux0, 3.11.0-12.19, 3.12.0-1.3
Ubuntu:18.04:LTSlinux-hwe4.18.0-25.26~18.04.1, 4.18.0-24.25~18.04.1, 4.18.0-22.23~18.04.1
Ubuntu:Pro:14.04:LTSlinux-lts-xenial4.4.0-221.254~14.04.1, 4.4.0-108.131~14.04.1, 4.4.0-109.132~14.04.1
Ubuntu:Pro:14.04:LTSlinux-azure4.15.0-1046.50~14.04.1, 4.15.0-1047.51~14.04.1, 4.15.0-1049.54~14.04.1

Timeline

References

Open in Interactive Console →