check_input_term in sound/usb/mixer.c in the Linux kernel through 5.2.9 mishandles recursion, leading to kernel stack exhaustion.
References
Configurations
Configuration 1 (hide)
|
Configuration 2 (hide)
|
Configuration 3 (hide)
|
Configuration 4 (hide)
|
Configuration 5 (hide)
|
Configuration 6 (hide)
| AND |
|
Configuration 7 (hide)
| AND |
|
History
21 Nov 2024, 04:28
| Type | Values Removed | Values Added |
|---|---|---|
| References | () http://lists.opensuse.org/opensuse-security-announce/2019-09/msg00064.html - Mailing List | |
| References | () http://lists.opensuse.org/opensuse-security-announce/2019-09/msg00066.html - Mailing List | |
| References | () http://packetstormsecurity.com/files/155212/Slackware-Security-Advisory-Slackware-14.2-kernel-Updates.html - Patch, Third Party Advisory, VDB Entry | |
| References | () https://git.kernel.org/pub/scm/linux/kernel/git/tiwai/sound.git/commit/?id=19bce474c45be69a284ecee660aa12d8f1e88f18 - Mailing List, Patch | |
| References | () https://lists.debian.org/debian-lts-announce/2019/09/msg00025.html - Mailing List | |
| References | () https://lists.debian.org/debian-lts-announce/2019/10/msg00000.html - Mailing List | |
| References | () https://lore.kernel.org/lkml/20190815043554.16623-1-benquike%40gmail.com/ - Mailing List, Patch | |
| References | () https://seclists.org/bugtraq/2019/Nov/11 - Mailing List, Patch, Third Party Advisory | |
| References | () https://seclists.org/bugtraq/2019/Sep/41 - Mailing List, Third Party Advisory | |
| References | () https://security.netapp.com/advisory/ntap-20190905-0002/ - Third Party Advisory | |
| References | () https://usn.ubuntu.com/4147-1/ - Third Party Advisory | |
| References | () https://usn.ubuntu.com/4162-1/ - Third Party Advisory | |
| References | () https://usn.ubuntu.com/4162-2/ - Third Party Advisory | |
| References | () https://usn.ubuntu.com/4163-1/ - Third Party Advisory | |
| References | () https://usn.ubuntu.com/4163-2/ - Third Party Advisory | |
| References | () https://www.debian.org/security/2019/dsa-4531 - Third Party Advisory |
Information
Published : 2019-08-16 14:15
Updated : 2024-11-21 04:28
NVD link : CVE-2019-15118
Mitre link : CVE-2019-15118
CVE.ORG link : CVE-2019-15118
JSON object : View
Products Affected
netapp
- active_iq_unified_manager
- solidfire_baseboard_management_controller
- h410c_firmware
- h410c
- solidfire
- hci_management_node
- solidfire_baseboard_management_controller_firmware
- data_availability_services
opensuse
- leap
canonical
- ubuntu_linux
debian
- debian_linux
linux
- linux_kernel
CWE
CWE-674
Uncontrolled Recursion
