Korean
<< Back
VID 14151
Severity 30
Port 23
Protocol TCP
Class TELNET
Detailed Description According to the Linux kernel information of the remote host, denial of service is possible due to a memory return error during device control implementation through the kvm_ioctl_create_device() function of the device control API.

* References:
https://www.kb.cert.org/vuls/id/332928
https://git.kernel.org/pub/scm/linux/kernel/git/torvalds/linux.git/commit/?id=cfa39381173d5f969daf43582c95ad679189cbc9

* Platforms Affected:
Linux Kernel 4.x prior to 4.20.8
Recommendation - Linux kernel installed manually
Apply the latest version by referring to the following.
https://www.kernel.org/

- Redhat
Apply the latest version by referring to the following.
https://access.redhat.com/security/cve/cve-2019-6974

- Ubuntu :
Apply the latest version by referring to the following.
https://usn.ubuntu.com/
https://people.canonical.com/~ubuntu-security/cve/2019/CVE-2019-6974.html
Related URL CVE-2019-6974 (CVE)
Related URL (SecurityFocus)
Related URL (ISS)