LinuxÄں˾ºÕùÌõ¼þ©¶´£¨CVE-2019-11815£©

Ðû²¼Ê±¼ä 2019-05-14


¶«É­¡¤(ÖйúÇø)¹Ù·½ÍøÕ¾


Åä¾°ÃèÊö


Ñо¿ÈËÔ±ÔÚ5.0.8֮ǰµÄLinuxÄÚºËÖз¢ÏÖ¾ºÕùÌõ¼þ©¶´£¨CVE-2019-11815£©¡£


ƾ¾ÝCVSS  3.0µÄÓ°ÏìÖ¸±ê£¬CVE-2019-11815©¶´¾ßÓи߻úÃÜÐÔ£¬ÍêÕûÐԺͿÉÓÃÐÔ£¬ÕâʹµÃDZÔÚ¹¥»÷Õß¿ÉÒÔ·ÃÎÊËùÓÐ×ÊÔ´£¬ÐÞ¸ÄÈκÎÎļþ¡£


ÕýÈçCommon Weakness Enumeration£¨CWE£©ÖÐËùÏêÊöµÄ£¬Use-After-FreeȱÏÝÊÇÓÉÓÚÔÚÄÚ´æ±»ÊͷźóʵÑéÒýÓÃÄڴ棬µ¼ÖÂÈí¼þÍ߽⣬¿ÉÖ´ÐÐÈÎÒâ´úÂë¡£

Ó°Ï췶Χ


CVE ID  £º    CVE-2019-11815   
CNNVD£º    CNNVD-201905-195 
©¶´Æ·¼¶£º   ÖÐΣ
Ó°Ï췶Χ£º   Linux kernel 5.0.8֮ǰµÄËùÓа汾

©¶´ÏêÇé


DZÔڵĹ¥»÷Õß¿ÉÀûÓÃLinuxÄں˵Änet/rds/tcp.cÖеÄrds_tcp_kill_sock TCP/IPÀ´´¥·¢¾Ü¾ø·þÎñ£¨DoS£©£¬»òÕßÔÚÒ×Êܹ¥»÷µÄϵͳÉÏÖ´ÐÐÈÎÒâ´úÂë¡£


¶«É­¡¤(ÖйúÇø)¹Ù·½ÍøÕ¾


ÐÞ¸´½¨Òé


LinuxÄں˿ª·¢ÈËÔ±ÔÚ3ÔÂÏÂÑ®Ðû²¼ÁËÕë¶ÔCVE-2019-11815©¶´µÄ²¹¶¡£¬²¢ÐÞ¸´ÁË4ÔÂ17ÈÕÐû²¼µÄLinuxÄÚºË5.0.8°æ±¾ÖеÄ©¶´¡£


½¨Òé¸÷Linux¿¯Ðа棨Red Hat£¬Ubuntu£¬SUSEºÍDebian£©ÐèÒªÉý¼¶ÖÁ×îаæLinuxÄںˡ£


²Î¿¼Á´½Ó


http://www.securityfocus.com/bid/108283


https://cdn.kernel.org/pub/linux/kernel/v5.x/ChangeLog-5.0.8


https://git.kernel.org/cgit/linux/kernel/git/torvalds/linux.git/commit/?id=cb66ddd156203daefb8d71158036b27b0e2caf63


https://github.com/torvalds/linux/commit/cb66ddd156203daefb8d71158036b27b0e2caf63