CVE-2019-12378 PUBLISHED

An issue was discovered in ip6_ra_control in net/ipv6/ipv6_sockglue.c in the Linux kernel through 5.1.5. There is an unchecked kmalloc of new_ra, which might allow an attacker to cause a denial of service (NULL pointer dereference and system crash). NOTE: This has been disputed as not an issue

EPSS 0.12% · 30.1th percentile

Risk Scores

EPSS Score
0.12%
30.1th percentile

Affected Products

VendorProductVersions
Ubuntu:Pro:14.04:LTSlinux-lts-xenial0, 4.4.0-131.157~14.04.1, 4.4.0-130.156~14.04.1
Ubuntu:Pro:14.04:LTSlinux-azure4.15.0-1196.211~14.04.1, 4.15.0-1179.194~14.04.1, 0
Ubuntu:Pro:14.04:LTSlinux-aws4.4.0-1148.154, 0, 4.4.0-1002.2
Ubuntu:Pro:14.04:LTSlinux3.11.0-12.19, 3.13.0-36.63, 0

Timeline

References

Open in Interactive Console →