[Forgot Password]
Login  Register Subscribe

30479

 
 

423868

 
 

249461

 
 

909

 
 

195508

 
 

282

Paid content will be excluded from the download.


Download | Alert*
OVAL

CVE-2019-10220 -- linux-image

ID: oval:org.secpod.oval:def:61659Date: (C)2020-03-09   (M)2024-04-17
Class: VULNERABILITYFamily: unix




Michael Hanselmann discovered that the CIFS implementation in the Linux kernel did not sanitize paths returned by an SMB server. An attacker controlling an SMB server could use this to overwrite arbitrary files.

Platform:
Ubuntu 16.04
Ubuntu 18.04
Product:
linux-image
linux-image-4.15
linux-image-4.4
linux-image-oracle-4.15
linux-image-azure-4.15
linux-image-gcp-4.15
linux-image-kvm-4.4
linux-image-aws-4.4
linux-image-gke-4.15
linux-image-kvm-4.15
linux-image-aws-4.15
Reference:
CVE-2019-10220
CVE    1
CVE-2019-10220
CPE    14
cpe:/a:linux:linux_image_aws:4.4
cpe:/a:linux:linux-image-oracle:4.15
cpe:/a:linux:linux-image-oem-osp1:5.0
cpe:/a:linux:linux_image_gke:4.15
...

© SecPod Technologies