CVE-2019-20386

Description

An issue was discovered in button_open in login/logind-button.c in systemd before 243. When executing the udevadm trigger command, a memory leak may occur.

Risk Information

Base Score
2.4
MODERATE
Vector
CVSS:3.1/AV:P/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:L
EPSS Score
Exploitation Probability
0.152

Associated Vulnerability

VulnerabilityOS Platform
system and service manager (USN-4269-1) systemd_242-7ubuntu3.6_i386.debLinux
system and service manager (USN-4269-1) systemd_242-7ubuntu3.6_amd64.debLinux
system and service manager (USN-4269-1) systemd_229-4ubuntu21.27_i386.debLinux
system and service manager (USN-4269-1) systemd_229-4ubuntu21.27_amd64.debLinux
system and service manager (USN-4269-1) systemd_237-3ubuntu10.38_i386.debLinux
system and service manager (USN-4269-1) systemd_237-3ubuntu10.38_amd64.debLinux
SUSE-SU-2020:1842-1(SUSE Linux Enterprise Server 12-SP4 ) libsystemd0-228-150.86.3.x86_64.rpmLinux
SUSE-SU-2020:1842-1(SUSE Linux Enterprise Server 12-SP4 ) libsystemd0-32bit-228-150.86.3.x86_64.rpmLinux
SUSE-SU-2020:1842-1(SUSE Linux Enterprise Server 12-SP4 ) libsystemd0-debuginfo-228-150.86.3.x86_64.rpmLinux
SUSE-SU-2020:1842-1(SUSE Linux Enterprise Server 12-SP4 ) libsystemd0-debuginfo-32bit-228-150.86.3.x86_64.rpmLinux
SUSE-SU-2020:1842-1(SUSE Linux Enterprise Server 12-SP4 ) libudev-devel-228-150.86.3.x86_64.rpmLinux
SUSE-SU-2020:1842-1(SUSE Linux Enterprise Server 12-SP4 ) libudev1-228-150.86.3.x86_64.rpmLinux
SUSE-SU-2020:1842-1(SUSE Linux Enterprise Server 12-SP4 ) libudev1-32bit-228-150.86.3.x86_64.rpmLinux
SUSE-SU-2020:1842-1(SUSE Linux Enterprise Server 12-SP4 ) libudev1-debuginfo-228-150.86.3.x86_64.rpmLinux
SUSE-SU-2020:1842-1(SUSE Linux Enterprise Server 12-SP4 ) libudev1-debuginfo-32bit-228-150.86.3.x86_64.rpmLinux
SUSE-SU-2020:1842-1(SUSE Linux Enterprise Server 12-SP4 ) systemd-228-150.86.3.x86_64.rpmLinux
SUSE-SU-2020:1842-1(SUSE Linux Enterprise Server 12-SP4 ) systemd-32bit-228-150.86.3.x86_64.rpmLinux
SUSE-SU-2020:1842-1(SUSE Linux Enterprise Server 12-SP4 ) systemd-bash-completion-228-150.86.3.noarch.rpmLinux
SUSE-SU-2020:1842-1(SUSE Linux Enterprise Server 12-SP4 ) systemd-debuginfo-228-150.86.3.x86_64.rpmLinux
SUSE-SU-2020:1842-1(SUSE Linux Enterprise Server 12-SP4 ) systemd-debuginfo-32bit-228-150.86.3.x86_64.rpmLinux
SUSE-SU-2020:1842-1(SUSE Linux Enterprise Server 12-SP4 ) systemd-debugsource-228-150.86.3.x86_64.rpmLinux
SUSE-SU-2020:1842-1(SUSE Linux Enterprise Server 12-SP4 ) systemd-devel-228-150.86.3.x86_64.rpmLinux
SUSE-SU-2020:1842-1(SUSE Linux Enterprise Server 12-SP4 ) systemd-sysvinit-228-150.86.3.x86_64.rpmLinux
SUSE-SU-2020:1842-1(SUSE Linux Enterprise Server 12-SP4 ) udev-228-150.86.3.x86_64.rpmLinux
SUSE-SU-2020:1842-1(SUSE Linux Enterprise Server 12-SP4 ) udev-debuginfo-228-150.86.3.x86_64.rpmLinux
(RHSA-2020:4007) systemd security and bug fix update libgudev1-219-78.el7.i686.rpmLinux
(RHSA-2020:4007) systemd security and bug fix update libgudev1-219-78.el7.x86_64.rpmLinux
(RHSA-2020:4007) systemd security and bug fix update libgudev1-devel-219-78.el7.i686.rpmLinux
(RHSA-2020:4007) systemd security and bug fix update libgudev1-devel-219-78.el7.x86_64.rpmLinux
(RHSA-2020:4007) systemd security and bug fix update systemd-219-78.el7.x86_64.rpmLinux
(RHSA-2020:4007) systemd security and bug fix update systemd-devel-219-78.el7.i686.rpmLinux
(RHSA-2020:4007) systemd security and bug fix update systemd-devel-219-78.el7.x86_64.rpmLinux
(RHSA-2020:4007) systemd security and bug fix update systemd-journal-gateway-219-78.el7.x86_64.rpmLinux
(RHSA-2020:4007) systemd security and bug fix update systemd-libs-219-78.el7.i686.rpmLinux
(RHSA-2020:4007) systemd security and bug fix update systemd-libs-219-78.el7.x86_64.rpmLinux
(RHSA-2020:4007) systemd security and bug fix update systemd-networkd-219-78.el7.x86_64.rpmLinux
(RHSA-2020:4007) systemd security and bug fix update systemd-python-219-78.el7.x86_64.rpmLinux
(RHSA-2020:4007) systemd security and bug fix update systemd-resolved-219-78.el7.i686.rpmLinux
(RHSA-2020:4007) systemd security and bug fix update systemd-resolved-219-78.el7.x86_64.rpmLinux
(RHSA-2020:4007) systemd security and bug fix update systemd-sysv-219-78.el7.x86_64.rpmLinux
Missing Release of Memory after Effective Lifetime Vulnerability (CVE-2019-20386)NCM

Patch Details

No records found

References

https://nvd.nist.gov/vuln/detail/CVE-2023-1234
https://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2023-1234