Korean
<< Back
VID 14152
Severity 40
Port 23
Protocol TCP
Class TELNET
Detailed Description According to the Linux kernel information of the remote host, there is a vulnerability that can be denied in the processing of the device control API of the kernel. This could cause an attacker to send malformed TCP packets to a vulnerable Linux server, resulting in a delay in service and an operational failure.

* References:
https://www.kernel.org/
https://github.com/Netflix/security-bulletins/blob/master/advisories/third-party/2019-001.md

* Platforms Affected:
Linux Kernel 4.x prior to 4.15
Recommendation - Linux kernel installed manually
Apply the latest version by referring to the following.
https://www.kernel.org/

- Redhat
Apply the latest version by referring to the following.
https://access.redhat.com/security/cve/cve-2019-11477
https://access.redhat.com/security/cve/cve-2019-11478
https://access.redhat.com/security/cve/cve-2019-11479

- CentOS
Apply the latest version by referring to the following.
https://lists.centos.org/pipermail/centos-announce/2019-June/023332.html
https://lists.centos.org/pipermail/centos-announce/2019-June/023333.html

- Ubuntu :
Apply the latest version by referring to the following.
https://usn.ubuntu.com/
https://usn.ubuntu.com/4017-1/
https://usn.ubuntu.com/4017-2/
Related URL CVE-2019-11477,CVE-2019-11478,CVE-2019-11479 (CVE)
Related URL (SecurityFocus)
Related URL (ISS)