cvelist/2019/14xxx/CVE-2019-14814.json

242 lines
10 KiB
JSON
Raw Normal View History

2019-09-20 11:32:59 +02:00
{
2023-02-02 21:01:49 +00:00
"data_version": "4.0",
2019-09-20 11:32:59 +02:00
"data_type": "CVE",
"data_format": "MITRE",
"CVE_data_meta": {
"ID": "CVE-2019-14814",
2019-09-20 19:00:59 +00:00
"ASSIGNER": "secalert@redhat.com",
"STATE": "PUBLIC"
2019-09-20 11:32:59 +02:00
},
2023-02-02 21:01:49 +00:00
"description": {
"description_data": [
{
"lang": "eng",
"value": "A flaw was found in the Linux kernel\u2019s implementation of the Marvell wifi driver, which can allow a local user who has CAP_NET_ADMIN or administrative privileges to possibly cause a Denial Of Service (DOS) by corrupting memory and possible code execution."
}
]
},
"problemtype": {
"problemtype_data": [
{
"description": [
{
"lang": "eng",
"value": "Heap-based Buffer Overflow",
"cweId": "CWE-122"
}
]
}
]
},
2019-09-20 11:32:59 +02:00
"affects": {
"vendor": {
"vendor_data": [
{
2023-02-02 21:01:49 +00:00
"vendor_name": "Red Hat",
2019-09-20 11:32:59 +02:00
"product": {
"product_data": [
{
2023-02-02 21:01:49 +00:00
"product_name": "Red Hat Enterprise Linux 7",
"version": {
"version_data": [
{
"version_value": "0:4.14.0-115.17.1.el7a",
"version_affected": "!"
},
{
"version_value": "0:3.10.0-1127.el7",
"version_affected": "!"
}
]
}
},
{
"product_name": "Red Hat Enterprise Linux 8",
2019-09-20 11:32:59 +02:00
"version": {
"version_data": [
{
2023-02-02 21:01:49 +00:00
"version_value": "0:4.18.0-147.5.1.rt24.98.el8_1",
"version_affected": "!"
},
{
"version_value": "0:4.18.0-147.5.1.el8_1",
"version_affected": "!"
2019-09-20 11:32:59 +02:00
}
]
}
}
]
}
}
]
}
},
"references": {
"reference_data": [
2019-09-20 20:00:55 +00:00
{
2023-02-02 21:01:49 +00:00
"url": "http://packetstormsecurity.com/files/154951/Kernel-Live-Patch-Security-Notice-LSN-0058-1.html",
"refsource": "MISC",
"name": "http://packetstormsecurity.com/files/154951/Kernel-Live-Patch-Security-Notice-LSN-0058-1.html"
},
{
"url": "http://packetstormsecurity.com/files/155212/Slackware-Security-Advisory-Slackware-14.2-kernel-Updates.html",
"refsource": "MISC",
"name": "http://packetstormsecurity.com/files/155212/Slackware-Security-Advisory-Slackware-14.2-kernel-Updates.html"
2019-09-20 20:00:55 +00:00
},
{
2023-02-02 21:01:49 +00:00
"url": "https://access.redhat.com/errata/RHSA-2020:0328",
"refsource": "MISC",
"name": "https://access.redhat.com/errata/RHSA-2020:0328"
2019-09-20 20:00:55 +00:00
},
{
2023-02-02 21:01:49 +00:00
"url": "https://access.redhat.com/errata/RHSA-2020:0339",
"refsource": "MISC",
"name": "https://access.redhat.com/errata/RHSA-2020:0339"
2019-09-20 20:00:55 +00:00
},
2019-09-20 11:32:59 +02:00
{
2023-02-02 21:01:49 +00:00
"url": "https://lists.debian.org/debian-lts-announce/2020/03/msg00001.html",
"refsource": "MISC",
"name": "https://lists.debian.org/debian-lts-announce/2020/03/msg00001.html"
2019-09-20 20:00:55 +00:00
},
{
2023-02-02 21:01:49 +00:00
"url": "https://access.redhat.com/errata/RHSA-2020:0174",
2019-09-20 20:00:55 +00:00
"refsource": "MISC",
2023-02-02 21:01:49 +00:00
"name": "https://access.redhat.com/errata/RHSA-2020:0174"
2019-09-20 20:00:55 +00:00
},
{
2023-02-02 21:01:49 +00:00
"url": "https://access.redhat.com/errata/RHSA-2020:1016",
2019-09-20 20:00:55 +00:00
"refsource": "MISC",
2023-02-02 21:01:49 +00:00
"name": "https://access.redhat.com/errata/RHSA-2020:1016"
2019-09-20 20:00:55 +00:00
},
{
2023-02-02 21:01:49 +00:00
"url": "https://github.com/torvalds/linux/commit/7caac62ed598a196d6ddf8d9c121e12e082cac3a",
2019-09-20 20:00:55 +00:00
"refsource": "MISC",
2023-02-02 21:01:49 +00:00
"name": "https://github.com/torvalds/linux/commit/7caac62ed598a196d6ddf8d9c121e12e082cac3a"
2019-09-24 15:00:59 +00:00
},
{
2023-02-02 21:01:49 +00:00
"url": "https://www.openwall.com/lists/oss-security/2019/08/28/1",
"refsource": "MISC",
"name": "https://www.openwall.com/lists/oss-security/2019/08/28/1"
2019-09-25 00:00:56 +00:00
},
{
2023-02-02 21:01:49 +00:00
"url": "http://lists.opensuse.org/opensuse-security-announce/2019-09/msg00064.html",
"refsource": "MISC",
"name": "http://lists.opensuse.org/opensuse-security-announce/2019-09/msg00064.html"
2019-09-25 12:01:06 +00:00
},
{
2023-02-02 21:01:49 +00:00
"url": "http://lists.opensuse.org/opensuse-security-announce/2019-09/msg00066.html",
"refsource": "MISC",
"name": "http://lists.opensuse.org/opensuse-security-announce/2019-09/msg00066.html"
2019-10-17 04:01:02 +00:00
},
{
2023-02-02 21:01:49 +00:00
"url": "http://www.openwall.com/lists/oss-security/2019/08/28/1",
"refsource": "MISC",
"name": "http://www.openwall.com/lists/oss-security/2019/08/28/1"
2019-10-22 04:58:48 +00:00
},
{
2023-02-02 21:01:49 +00:00
"url": "https://access.redhat.com/security/cve/CVE-2019-14814",
"refsource": "MISC",
"name": "https://access.redhat.com/security/cve/CVE-2019-14814"
2019-10-22 04:58:48 +00:00
},
{
2023-02-02 21:01:49 +00:00
"url": "https://access.redhat.com/security/cve/cve-2019-14814",
"refsource": "MISC",
"name": "https://access.redhat.com/security/cve/cve-2019-14814"
},
{
"url": "https://bugzilla.redhat.com/show_bug.cgi?id=1744130",
"refsource": "MISC",
"name": "https://bugzilla.redhat.com/show_bug.cgi?id=1744130"
},
{
"url": "https://bugzilla.redhat.com/show_bug.cgi?id=CVE-2019-14814",
"refsource": "MISC",
"name": "https://bugzilla.redhat.com/show_bug.cgi?id=CVE-2019-14814"
2019-10-22 04:58:48 +00:00
},
{
2023-02-02 21:01:49 +00:00
"url": "https://git.kernel.org/pub/scm/linux/kernel/git/torvalds/linux.git/commit/?id=7caac62ed598a196d6ddf8d9c121e12e082cac3a",
"refsource": "MISC",
"name": "https://git.kernel.org/pub/scm/linux/kernel/git/torvalds/linux.git/commit/?id=7caac62ed598a196d6ddf8d9c121e12e082cac3a"
2019-10-23 06:01:04 +00:00
},
{
2023-02-02 21:01:49 +00:00
"url": "https://lists.debian.org/debian-lts-announce/2019/09/msg00025.html",
"refsource": "MISC",
"name": "https://lists.debian.org/debian-lts-announce/2019/09/msg00025.html"
2019-10-23 08:00:56 +00:00
},
{
2023-02-02 21:01:49 +00:00
"url": "https://lists.fedoraproject.org/archives/list/package-announce%40lists.fedoraproject.org/message/O3RUDQJXRJQVGHCGR4YZWTQ3ECBI7TXH/",
"refsource": "MISC",
"name": "https://lists.fedoraproject.org/archives/list/package-announce%40lists.fedoraproject.org/message/O3RUDQJXRJQVGHCGR4YZWTQ3ECBI7TXH/"
2019-10-23 20:01:04 +00:00
},
{
2023-02-02 21:01:49 +00:00
"url": "https://lists.fedoraproject.org/archives/list/package-announce%40lists.fedoraproject.org/message/T4JZ6AEUKFWBHQAROGMQARJ274PQP2QP/",
2019-10-23 20:01:04 +00:00
"refsource": "MISC",
2023-02-02 21:01:49 +00:00
"name": "https://lists.fedoraproject.org/archives/list/package-announce%40lists.fedoraproject.org/message/T4JZ6AEUKFWBHQAROGMQARJ274PQP2QP/"
2019-10-31 09:01:09 +00:00
},
{
2023-02-02 21:01:49 +00:00
"url": "https://seclists.org/bugtraq/2019/Nov/11",
"refsource": "MISC",
"name": "https://seclists.org/bugtraq/2019/Nov/11"
2019-11-08 14:01:30 +00:00
},
{
2023-02-02 21:01:49 +00:00
"url": "https://security.netapp.com/advisory/ntap-20191031-0005/",
"refsource": "MISC",
"name": "https://security.netapp.com/advisory/ntap-20191031-0005/"
2019-11-08 18:01:29 +00:00
},
{
2023-02-02 21:01:49 +00:00
"url": "https://usn.ubuntu.com/4157-1/",
2019-11-08 18:01:29 +00:00
"refsource": "MISC",
2023-02-02 21:01:49 +00:00
"name": "https://usn.ubuntu.com/4157-1/"
2020-01-21 20:01:12 +00:00
},
{
2023-02-02 21:01:49 +00:00
"url": "https://usn.ubuntu.com/4157-2/",
"refsource": "MISC",
"name": "https://usn.ubuntu.com/4157-2/"
2020-02-04 12:01:28 +00:00
},
{
2023-02-02 21:01:49 +00:00
"url": "https://usn.ubuntu.com/4162-1/",
"refsource": "MISC",
"name": "https://usn.ubuntu.com/4162-1/"
2020-02-04 16:01:14 +00:00
},
{
2023-02-02 21:01:49 +00:00
"url": "https://usn.ubuntu.com/4162-2/",
"refsource": "MISC",
"name": "https://usn.ubuntu.com/4162-2/"
2020-03-02 20:01:14 +00:00
},
{
2023-02-02 21:01:49 +00:00
"url": "https://usn.ubuntu.com/4163-1/",
"refsource": "MISC",
"name": "https://usn.ubuntu.com/4163-1/"
},
2019-09-20 11:32:59 +02:00
{
2023-02-02 21:01:49 +00:00
"url": "https://usn.ubuntu.com/4163-2/",
"refsource": "MISC",
"name": "https://usn.ubuntu.com/4163-2/"
2019-09-20 11:32:59 +02:00
}
]
},
2023-02-02 21:01:49 +00:00
"credits": [
{
"lang": "en",
"value": "Red Hat would like to thank Huangwen (ADLab of Venustech) for reporting this issue."
}
],
2019-09-20 11:32:59 +02:00
"impact": {
"cvss": [
2023-02-02 21:01:49 +00:00
{
"attackComplexity": "LOW",
"attackVector": "LOCAL",
"availabilityImpact": "HIGH",
"baseScore": 6.7,
"baseSeverity": "MEDIUM",
"confidentialityImpact": "HIGH",
"integrityImpact": "HIGH",
"privilegesRequired": "HIGH",
"scope": "UNCHANGED",
"userInteraction": "NONE",
"vectorString": "CVSS:3.0/AV:L/AC:L/PR:H/UI:N/S:U/C:H/I:H/A:H",
"version": "3.0"
}
2019-09-20 11:32:59 +02:00
]
}
2019-09-20 19:00:59 +00:00
}