[Forgot Password]
Login  Register Subscribe

30481

 
 

423868

 
 

256288

 
 

909

 
 

199146

 
 

282

Paid content will be excluded from the download.


Download | Alert*
OVAL

CVE-2019-20794 -- linux-image

ID: oval:org.secpod.oval:def:2003372Date: (C)2020-09-23   (M)2021-10-20
Class: VULNERABILITYFamily: unix




An issue was discovered in the Linux kernel 4.18 through 5.6.11 when unprivileged user namespaces are allowed. A user can create their own PID namespace, and mount a FUSE filesystem. Upon interaction with this FUSE filesystem, if the userspace component is terminated via a kill of the PID namespace"s pid 1, it will result in a hung task, and resources being permanently locked up until system reboot. This can result in resource exhaustion.

Platform:
Debian 10.x
Debian 9.x
Product:
linux-image-4.9
linux-image-4.19
Reference:
CVE-2019-20794
CVE    1
CVE-2019-20794

© SecPod Technologies