Description
fs/btrfs/volumes.c in the Linux kernel before 5.1 allows a btrfs_verify_dev_extents NULL pointer dereference via a crafted btrfs image because fs_devices->devices is mishandled within find_device, aka CID-09ba3bc9dd15.
Analysis and contextual insights are available on OpenCVE Cloud.
Remediation
No vendor fix or workaround currently provided.
Additional remediation guidance may be available on OpenCVE Cloud.
Tracking
Sign in to view the affected projects.
Advisories
| Source | ID | Title |
|---|---|---|
Debian DLA |
DLA-2323-1 | linux-4.19 new package |
EUVD |
EUVD-2019-8573 | fs/btrfs/volumes.c in the Linux kernel before 5.1 allows a btrfs_verify_dev_extents NULL pointer dereference via a crafted btrfs image because fs_devices->devices is mishandled within find_device, aka CID-09ba3bc9dd15. |
Ubuntu USN |
USN-4254-1 | Linux kernel vulnerabilities |
Ubuntu USN |
USN-4254-2 | Linux kernel (Xenial HWE) vulnerabilities |
Ubuntu USN |
USN-4258-1 | Linux kernel vulnerabilities |
Ubuntu USN |
USN-4287-1 | Linux kernel vulnerabilities |
Ubuntu USN |
USN-4287-2 | Linux kernel (Azure) vulnerabilities |
References
History
No history.
Status: PUBLISHED
Assigner: mitre
Published:
Updated: 2024-08-05T02:02:39.701Z
Reserved: 2019-11-12T00:00:00.000Z
Link: CVE-2019-18885
No data.
Status : Modified
Published: 2019-11-14T14:15:11.630
Modified: 2024-11-21T04:33:46.677
Link: CVE-2019-18885
OpenCVE Enrichment
No data.
Weaknesses
Debian DLA
EUVD
Ubuntu USN