kernel: rtl_p2p_noa_ie in drivers/net/wireless/realtek/rtlwifi/ps.c in the Linux kernel lacks a certain upper-bound check, leading to a buffer overflow
Published Oct 17, 2019
8.8
HIGHCVSS 3.1
EPSS 3.02%
Description
rtl_p2p_noa_ie in drivers/net/wireless/realtek/rtlwifi/ps.c in the Linux kernel through 5.3.6 lacks a certain upper-bound check, leading to a buffer overflow.
Affected products
No data.
Configuration 1
- < 3.16.77
- ≥ 3.17 · < 4.4.199
- ≥ 4.5 · < 4.9.199
- ≥ 4.10 · < 4.14.152
- ≥ 4.15 · < 4.19.82
- ≥ 4.20 · < 5.2
- ≥ 5.3 · < 5.3.9
Configuration 2
- 8.0
Configuration 3
- 14.04
- 16.04
- 18.04
- 19.04
- 19.10
No data.
Red Hat Enterprise Linux 6
kernel-0:2.6.32-754.29.1.el6
Fixed · RHSA-2020:1524
Red Hat Enterprise Linux 7
kernel-0:3.10.0-1062.18.1.el7
Fixed · RHSA-2020:0834
Red Hat Enterprise Linux 7
kernel-alt-0:4.14.0-115.18.1.el7a
Fixed · RHSA-2020:0740
Red Hat Enterprise Linux 7
kernel-rt-0:3.10.0-1062.18.1.rt56.1044.el7
Fixed · RHSA-2020:0839
Red Hat Enterprise Linux 7.2 Advanced Update Support
kernel-0:3.10.0-327.85.1.el7
Fixed · RHSA-2020:0661
Red Hat Enterprise Linux 7.3 Advanced Update Support
kernel-0:3.10.0-514.74.1.el7
Fixed · RHSA-2020:1473
Red Hat Enterprise Linux 7.3 Telco Extended Update Support
kernel-0:3.10.0-514.74.1.el7
Fixed · RHSA-2020:1473
Red Hat Enterprise Linux 7.3 Update Services for SAP Solutions
kernel-0:3.10.0-514.74.1.el7
Fixed · RHSA-2020:1473
Red Hat Enterprise Linux 7.4 Advanced Update Support
kernel-0:3.10.0-693.65.1.el7
Fixed · RHSA-2020:1347
Red Hat Enterprise Linux 7.4 Telco Extended Update Support
kernel-0:3.10.0-693.65.1.el7
Fixed · RHSA-2020:1347
Red Hat Enterprise Linux 7.4 Update Services for SAP Solutions
kernel-0:3.10.0-693.65.1.el7
Fixed · RHSA-2020:1347
Red Hat Enterprise Linux 7.5 Extended Update Support
kernel-0:3.10.0-862.48.1.el7
Fixed · RHSA-2020:0543
Red Hat Enterprise Linux 7.6 Extended Update Support
kernel-0:3.10.0-957.48.1.el7
Fixed · RHSA-2020:1465
Red Hat Enterprise Linux 8
kernel-0:4.18.0-147.5.1.el8_1
Fixed · RHSA-2020:0339
Red Hat Enterprise Linux 8
kernel-rt-0:4.18.0-147.5.1.rt24.98.el8_1
Fixed · RHSA-2020:0328
Red Hat Enterprise Linux 8.0 Update Services for SAP Solutions
kernel-0:4.18.0-80.16.1.el8_0
Fixed · RHSA-2020:0831
Red Hat Enterprise MRG 2
kernel-rt-1:3.10.0-693.65.1.rt56.663.el6rt
Fixed · RHSA-2020:1353
Red Hat Virtualization 4.2 for Red Hat Enterprise Linux 7.6 EUS
kernel-0:3.10.0-957.48.1.el7
Fixed · RHSA-2020:1465
Red Hat Enterprise Linux 5
kernel
Not affected
| Product | Package | State | Advisory |
|---|---|---|---|
| Red Hat Enterprise Linux 6 | kernel-0:2.6.32-754.29.1.el6 | Fixed | RHSA-2020:1524 |
| Red Hat Enterprise Linux 7 | kernel-0:3.10.0-1062.18.1.el7 | Fixed | RHSA-2020:0834 |
| Red Hat Enterprise Linux 7 | kernel-alt-0:4.14.0-115.18.1.el7a | Fixed | RHSA-2020:0740 |
| Red Hat Enterprise Linux 7 | kernel-rt-0:3.10.0-1062.18.1.rt56.1044.el7 | Fixed | RHSA-2020:0839 |
| Red Hat Enterprise Linux 7.2 Advanced Update Support | kernel-0:3.10.0-327.85.1.el7 | Fixed | RHSA-2020:0661 |
| Red Hat Enterprise Linux 7.3 Advanced Update Support | kernel-0:3.10.0-514.74.1.el7 | Fixed | RHSA-2020:1473 |
| Red Hat Enterprise Linux 7.3 Telco Extended Update Support | kernel-0:3.10.0-514.74.1.el7 | Fixed | RHSA-2020:1473 |
| Red Hat Enterprise Linux 7.3 Update Services for SAP Solutions | kernel-0:3.10.0-514.74.1.el7 | Fixed | RHSA-2020:1473 |
| Red Hat Enterprise Linux 7.4 Advanced Update Support | kernel-0:3.10.0-693.65.1.el7 | Fixed | RHSA-2020:1347 |
| Red Hat Enterprise Linux 7.4 Telco Extended Update Support | kernel-0:3.10.0-693.65.1.el7 | Fixed | RHSA-2020:1347 |
| Red Hat Enterprise Linux 7.4 Update Services for SAP Solutions | kernel-0:3.10.0-693.65.1.el7 | Fixed | RHSA-2020:1347 |
| Red Hat Enterprise Linux 7.5 Extended Update Support | kernel-0:3.10.0-862.48.1.el7 | Fixed | RHSA-2020:0543 |
| Red Hat Enterprise Linux 7.6 Extended Update Support | kernel-0:3.10.0-957.48.1.el7 | Fixed | RHSA-2020:1465 |
| Red Hat Enterprise Linux 8 | kernel-0:4.18.0-147.5.1.el8_1 | Fixed | RHSA-2020:0339 |
| Red Hat Enterprise Linux 8 | kernel-rt-0:4.18.0-147.5.1.rt24.98.el8_1 | Fixed | RHSA-2020:0328 |
| Red Hat Enterprise Linux 8.0 Update Services for SAP Solutions | kernel-0:4.18.0-80.16.1.el8_0 | Fixed | RHSA-2020:0831 |
| Red Hat Enterprise MRG 2 | kernel-rt-1:3.10.0-693.65.1.rt56.663.el6rt | Fixed | RHSA-2020:1353 |
| Red Hat Virtualization 4.2 for Red Hat Enterprise Linux 7.6 EUS | kernel-0:3.10.0-957.48.1.el7 | Fixed | RHSA-2020:1465 |
| Red Hat Enterprise Linux 5 | kernel | Not affected | n/a |
No package ranges for this CVE.
Remediation
No remediation recorded yet.
References (25)
- http://lists.opensuse.org/opensuse-security-announce/2019-10/msg00064.html vendor-advisoryx_refsource_SUSEMailing ListThird Party Advisory
- http://lists.opensuse.org/opensuse-security-announce/2019-11/msg00010.html vendor-advisoryx_refsource_SUSEMailing ListThird Party Advisory
- https://access.redhat.com/errata/RHSA-2020:0328 vendor-advisoryx_refsource_REDHATThird Party Advisory
- https://access.redhat.com/errata/RHSA-2020:0339 vendor-advisoryx_refsource_REDHATThird Party Advisory
- https://access.redhat.com/errata/RHSA-2020:0543 vendor-advisoryx_refsource_REDHATThird Party Advisory
- https://access.redhat.com/errata/RHSA-2020:0661 vendor-advisoryx_refsource_REDHATThird Party Advisory
- https://access.redhat.com/errata/RHSA-2020:0740 vendor-advisoryx_refsource_REDHATThird Party Advisory
- https://access.redhat.com/security/cve/CVE-2019-17666 Vendor Advisory
- https://arstechnica.com/information-technology/2019/10/unpatched-linux-flaw-may-let-attackers-crash-or-compromise-nearby-devices/ x_refsource_MISCThird Party Advisory
- https://bugzilla.redhat.com/show_bug.cgi?id=1763690 Issue Tracking
- https://euvd.enisa.europa.eu/vulnerability/EUVD-2019-7971 Advisory
- https://git.kernel.org/pub/scm/linux/kernel/git/torvalds/linux.git/commit/?id=8c55dedb795be8ec0cf488f98c03a1c2176f7fb1
- https://lists.debian.org/debian-lts-announce/2020/01/msg00013.html mailing-listx_refsource_MLISTThird Party Advisory
- https://lists.debian.org/debian-lts-announce/2020/03/msg00001.html mailing-listx_refsource_MLISTThird Party Advisory
- https://lists.fedoraproject.org/archives/list/package-announce%40lists.fedoraproject.org/message/TRBP4O6D2SQ2NHCRHTJONGCZLWOIV5MN/ vendor-advisoryx_refsource_FEDORA
- https://lkml.org/lkml/2019/10/16/1226 x_refsource_MISCMailing ListPatchThird Party Advisory
- https://nvd.nist.gov/vuln/detail/CVE-2019-17666
- https://security.netapp.com/advisory/ntap-20191031-0005/ x_refsource_CONFIRMThird Party Advisory
- https://twitter.com/nicowaisman/status/1184864519316758535 x_refsource_MISCThird Party Advisory
- https://usn.ubuntu.com/4183-1/ vendor-advisoryx_refsource_UBUNTUThird Party Advisory
- https://usn.ubuntu.com/4184-1/ vendor-advisoryx_refsource_UBUNTUThird Party Advisory
- https://usn.ubuntu.com/4185-1/ vendor-advisoryx_refsource_UBUNTUThird Party Advisory
- https://usn.ubuntu.com/4186-1/ vendor-advisoryx_refsource_UBUNTUThird Party Advisory
- https://usn.ubuntu.com/4186-2/ vendor-advisoryx_refsource_UBUNTUThird Party Advisory
- https://www.cve.org/CVERecord?id=CVE-2019-17666
Change history (0)
No recorded changes yet.