imPC@ndo IT

Tracker / CVE-2019-17666

CVE-2019-17666

High 8.8

rtl_p2p_noa_ie in drivers/net/wireless/realtek/rtlwifi/ps.c in the Linux kernel through 5.3.6 lacks a certain upper-bound check, leading to a buffer overflow.

Affected products and versions

canonical ubuntu_linux
debian debian_linux
linux linux_kernel · … → 3.16.77
linux linux_kernel · 3.17 → 4.4.199
linux linux_kernel · 4.10 → 4.14.152
linux linux_kernel · 4.15 → 4.19.82
linux linux_kernel · 4.20 → 5.2
linux linux_kernel · 4.5 → 4.9.199
linux linux_kernel · 5.3 → 5.3.9

Analysis

This page is not indexable yet.Until it carries original analysis — what it actually exposes, how to check in two minutes whether a system was touched, what to do if it was — the page stays noindex. The database decides that, not the template.

References