#4517: linux-5.2.9
--------------------+-----------------------
 Reporter:  renodr  |       Owner:  lfs-book
     Type:  task    |      Status:  new
 Priority:  normal  |   Milestone:  9.1
Component:  Book    |     Version:  SVN
 Severity:  normal  |  Resolution:
 Keywords:          |
--------------------+-----------------------

Comment (by renodr):

 Heads up, this fixes vulnerabilities in the USB subsystem:

 [https://seclists.org/oss-sec/2019/q3/146]

 {{{
 ### CVEs

 * https://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2019-15290

 An issue was discovered in the Linux kernel through 5.2.9. There is a
 NULL pointer dereference caused by a malicious USB device in the
 ath6kl_usb_alloc_urb_from_pipe function in the
 drivers/net/wireless/ath/ath6kl/usb.c driver.

 * https://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2019-15291

 An issue was discovered in the Linux kernel through 5.2.9. There is a
 NULL pointer dereference caused by a malicious USB device in the
 flexcop_usb_probe function in the drivers/media/usb/b2c2/flexcop-usb.c
 driver.
 }}}

--
Ticket URL: <http://wiki.linuxfromscratch.org/lfs/ticket/4517#comment:1>
LFS Trac <http://wiki.linuxfromscratch.org/lfs/>
Linux From Scratch: Your Distro, Your Rules.
-- 
http://lists.linuxfromscratch.org/listinfo/lfs-book
FAQ: http://www.linuxfromscratch.org/blfs/faq.html
Unsubscribe: See the above information page

Reply via email to