CVE-2019-11833

Description

fs/ext4/extents.c in the Linux kernel through 5.1.2 does not zero out the unused memory region in the extent tree block, which might allow local users to obtain sensitive information by reading uninitialized data in the filesystem.

Risk Information

Base Score
5.5
MODERATE
Vector
CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:N/A:N
EPSS Score
Exploitation Probability
0.025

Associated Vulnerability

VulnerabilityOS Platform
Multiple Vulnerabilities are affected in IBM Security Guardium 11.1Windows
Multiple Vulnerabilities are affected in IBM Security Guardium 11.0Windows
Linux kernel (USN-4068-1) linux-image-aws_4.15.0.1044.43_amd64.debLinux
Linux kernel (USN-4068-1) linux-image-gcp_4.15.0.1037.39_amd64.debLinux
Linux kernel (USN-4068-1) linux-image-kvm_4.15.0.1039.39_amd64.debLinux
Linux kernel (USN-4068-1) linux-image-oracle_4.15.0.1018.21_amd64.debLinux
Linux kernel (USN-4068-1) linux-image-generic_4.15.0.55.57_i386.debLinux
Linux kernel (USN-4068-1) linux-image-generic_4.15.0.55.57_amd64.debLinux
Linux kernel (USN-4068-1) linux-image-virtual_4.15.0.55.57_i386.debLinux
Linux kernel (USN-4068-1) linux-image-virtual_4.15.0.55.57_amd64.debLinux
Linux kernel (USN-4068-1) linux-image-lowlatency_4.15.0.55.57_i386.debLinux
Linux kernel (USN-4068-1) linux-image-lowlatency_4.15.0.55.57_amd64.debLinux
Linux kernel (USN-4068-1) linux-image-4.15.0-1037-gcp_4.15.0-1037.39_amd64.debLinux
Linux kernel (USN-4068-1) linux-image-4.15.0-1039-kvm_4.15.0-1039.39_amd64.debLinux
Linux kernel (USN-4068-1) linux-image-4.15.0-1044-aws_4.15.0-1044.46_amd64.debLinux
Linux kernel (USN-4068-1) linux-image-4.15.0-55-generic_4.15.0-55.60_i386.debLinux
Linux kernel (USN-4068-1) linux-image-4.15.0-55-generic_4.15.0-55.60_amd64.debLinux
Linux kernel (USN-4068-1) linux-image-4.15.0-1018-oracle_4.15.0-1018.20_amd64.debLinux
Linux kernel (USN-4068-1) linux-image-4.15.0-55-lowlatency_4.15.0-55.60_i386.debLinux
Linux kernel (USN-4068-1) linux-image-4.15.0-55-lowlatency_4.15.0-55.60_amd64.debLinux
Linux kernel (USN-4069-1) linux-image-aws_5.0.0.1011.11_amd64.debLinux
Linux kernel (USN-4069-1) linux-image-gcp_5.0.0.1011.11_amd64.debLinux
Linux kernel (USN-4069-1) linux-image-gke_5.0.0.1011.11_amd64.debLinux
Linux kernel (USN-4069-1) linux-image-kvm_5.0.0.1011.11_amd64.debLinux
Linux kernel (USN-4069-1) linux-image-azure_5.0.0.1012.11_amd64.debLinux
Linux kernel (USN-4069-1) linux-image-generic_5.0.0.21.22_i386.debLinux
Linux kernel (USN-4069-1) linux-image-generic_5.0.0.21.22_amd64.debLinux
Linux kernel (USN-4069-1) linux-image-virtual_5.0.0.21.22_i386.debLinux
Linux kernel (USN-4069-1) linux-image-virtual_5.0.0.21.22_amd64.debLinux
Linux kernel (USN-4069-1) linux-image-lowlatency_5.0.0.21.22_i386.debLinux
Linux kernel (USN-4069-1) linux-image-lowlatency_5.0.0.21.22_amd64.debLinux
Linux kernel (USN-4069-1) linux-image-5.0.0-1011-aws_5.0.0-1011.12_amd64.debLinux
Linux kernel (USN-4069-1) linux-image-5.0.0-1011-gcp_5.0.0-1011.11_amd64.debLinux
Linux kernel (USN-4069-1) linux-image-5.0.0-1011-kvm_5.0.0-1011.12_amd64.debLinux
Linux kernel (USN-4069-1) linux-image-5.0.0-1012-azure_5.0.0-1012.12_amd64.debLinux
Linux kernel (USN-4069-1) linux-image-5.0.0-21-generic_5.0.0-21.22_i386.debLinux
Linux kernel (USN-4069-1) linux-image-5.0.0-21-generic_5.0.0-21.22_amd64.debLinux
Linux kernel (USN-4069-1) linux-image-5.0.0-21-lowlatency_5.0.0-21.22_i386.debLinux
Linux kernel (USN-4069-1) linux-image-5.0.0-21-lowlatency_5.0.0-21.22_amd64.debLinux
Linux kernel (USN-4076-1) linux-image-aws_4.4.0.1088.91_amd64.debLinux
Linux kernel (USN-4076-1) linux-image-kvm_4.4.0.1052.52_amd64.debLinux
Linux kernel (USN-4076-1) linux-image-generic_4.4.0.157.165_i386.debLinux
Linux kernel (USN-4076-1) linux-image-generic_4.4.0.157.165_amd64.debLinux
Linux kernel (USN-4076-1) linux-image-virtual_4.4.0.157.165_i386.debLinux
Linux kernel (USN-4076-1) linux-image-virtual_4.4.0.157.165_amd64.debLinux
Linux kernel (USN-4076-1) linux-image-lowlatency_4.4.0.157.165_i386.debLinux
Linux kernel (USN-4076-1) linux-image-lowlatency_4.4.0.157.165_amd64.debLinux
Linux kernel (USN-4076-1) linux-image-4.4.0-1052-kvm_4.4.0-1052.59_amd64.debLinux
Linux kernel (USN-4076-1) linux-image-4.4.0-1088-aws_4.4.0-1088.99_amd64.debLinux
Linux kernel (USN-4076-1) linux-image-4.4.0-157-generic_4.4.0-157.185_i386.debLinux
Linux kernel (USN-4076-1) linux-image-4.4.0-157-generic_4.4.0-157.185_amd64.debLinux
Linux kernel (USN-4076-1) linux-image-4.4.0-157-lowlatency_4.4.0-157.185_i386.debLinux
Linux kernel (USN-4076-1) linux-image-4.4.0-157-lowlatency_4.4.0-157.185_amd64.debLinux
Linux hardware enablement (HWE) kernel (USN-4069-2) linux-image-5.0.0-23-generic_5.0.0-23.24~18.04.1_i386.debLinux
Linux hardware enablement (HWE) kernel (USN-4069-2) linux-image-5.0.0-23-generic_5.0.0-23.24~18.04.1_amd64.debLinux
Linux hardware enablement (HWE) kernel (USN-4069-2) linux-image-generic-hwe-18.04_5.0.0.23.80_i386.debLinux
Linux hardware enablement (HWE) kernel (USN-4069-2) linux-image-generic-hwe-18.04_5.0.0.23.80_amd64.debLinux
Linux hardware enablement (HWE) kernel (USN-4069-2) linux-image-virtual-hwe-18.04_5.0.0.23.80_i386.debLinux
Linux hardware enablement (HWE) kernel (USN-4069-2) linux-image-virtual-hwe-18.04_5.0.0.23.80_amd64.debLinux
Linux hardware enablement (HWE) kernel (USN-4069-2) linux-image-5.0.0-23-lowlatency_5.0.0-23.24~18.04.1_i386.debLinux
Linux hardware enablement (HWE) kernel (USN-4069-2) linux-image-5.0.0-23-lowlatency_5.0.0-23.24~18.04.1_amd64.debLinux
Linux hardware enablement (HWE) kernel (USN-4069-2) linux-image-lowlatency-hwe-18.04_5.0.0.23.80_i386.debLinux
Linux hardware enablement (HWE) kernel (USN-4069-2) linux-image-lowlatency-hwe-18.04_5.0.0.23.80_amd64.debLinux
Linux kernel for Amazon Web Services (AWS) systems (USN-4118-1) linux-image-aws_4.15.0.1047.46_amd64.debLinux
Linux kernel for Amazon Web Services (AWS) systems (USN-4118-1) linux-image-aws-hwe_4.15.0.1047.47_amd64.debLinux
Linux kernel for Amazon Web Services (AWS) systems (USN-4118-1) linux-image-4.15.0-1047-aws_4.15.0-1047.49_amd64.debLinux
Linux kernel for Amazon Web Services (AWS) systems (USN-4118-1) linux-image-4.15.0-1047-aws_4.15.0-1047.49~16.04.1_amd64.debLinux
(RHSA-2019:2029) kernel security, bug fix, and enhancement update bpftool-3.10.0-1062.el7.x86_64.rpmLinux
(RHSA-2019:2029) kernel security, bug fix, and enhancement update kernel-3.10.0-1062.el7.x86_64.rpmLinux
(RHSA-2019:2029) kernel security, bug fix, and enhancement update kernel-abi-whitelists-3.10.0-1062.el7.noarch.rpmLinux
(RHSA-2019:2029) kernel security, bug fix, and enhancement update kernel-debug-3.10.0-1062.el7.x86_64.rpmLinux
(RHSA-2019:2029) kernel security, bug fix, and enhancement update kernel-debug-devel-3.10.0-1062.el7.x86_64.rpmLinux
(RHSA-2019:2029) kernel security, bug fix, and enhancement update kernel-devel-3.10.0-1062.el7.x86_64.rpmLinux
(RHSA-2019:2029) kernel security, bug fix, and enhancement update kernel-doc-3.10.0-1062.el7.noarch.rpmLinux
(RHSA-2019:2029) kernel security, bug fix, and enhancement update kernel-headers-3.10.0-1062.el7.x86_64.rpmLinux
(RHSA-2019:2029) kernel security, bug fix, and enhancement update kernel-tools-3.10.0-1062.el7.x86_64.rpmLinux
(RHSA-2019:2029) kernel security, bug fix, and enhancement update kernel-tools-libs-3.10.0-1062.el7.x86_64.rpmLinux
(RHSA-2019:2029) kernel security, bug fix, and enhancement update kernel-tools-libs-devel-3.10.0-1062.el7.x86_64.rpmLinux
(RHSA-2019:2029) kernel security, bug fix, and enhancement update perf-3.10.0-1062.el7.x86_64.rpmLinux
(RHSA-2019:2029) kernel security, bug fix, and enhancement update python-perf-3.10.0-1062.el7.x86_64.rpmLinux

Patch Details

No records found

References

https://nvd.nist.gov/vuln/detail/CVE-2023-1234
https://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2023-1234