summaryrefslogtreecommitdiffstats
path: root/retired/CVE-2019-19528
diff options
context:
space:
mode:
authorSalvatore Bonaccorso <carnil@debian.org>2020-02-09 21:22:45 +0100
committerSalvatore Bonaccorso <carnil@debian.org>2020-02-09 21:22:45 +0100
commit30e923c9029fa0f9ba1976670c8ee73cbf02169e (patch)
tree87b0fd686e9a24569aaaf32fc5792062600f7517 /retired/CVE-2019-19528
parent00d322afed3dc04e74ab0037716e96278c5b8ac6 (diff)
Retire some CVEs
Diffstat (limited to 'retired/CVE-2019-19528')
-rw-r--r--retired/CVE-2019-1952816
1 files changed, 16 insertions, 0 deletions
diff --git a/retired/CVE-2019-19528 b/retired/CVE-2019-19528
new file mode 100644
index 00000000..393d582d
--- /dev/null
+++ b/retired/CVE-2019-19528
@@ -0,0 +1,16 @@
+Description: USB: iowarrior: fix use-after-free on disconnect
+References:
+ http://www.openwall.com/lists/oss-security/2019/12/03/4
+Notes:
+ carnil> The fix c468a8aa790e ("usb: iowarrior: fix deadlock on
+ carnil> disconnect") in 5.3-rc4 (and backported to 5.2.9, 4.19.67 and
+ carnil> 4.9.190) introduced the issue.
+Bugs:
+upstream: released (5.4-rc3) [edc4746f253d907d048de680a621e121517f484b]
+4.19-upstream-stable: released (4.19.80) [2fdcf7e19bdefc683da824264c0898af39bf8d50]
+4.9-upstream-stable: released (4.9.197) [323f425a7618fdb0b961dec2c58685fa32eafa1b]
+3.16-upstream-stable: N/A "Vulnerable code not present"
+sid: released (5.3.7-1)
+4.19-buster-security: released (4.19.87-1)
+4.9-stretch-security: N/A "Vulnerable code not yet present in released version"
+3.16-jessie-security: N/A "Vulnerable code not present"

© 2014-2024 Faster IT GmbH | imprint | privacy policy