LinuxÄں˾ºÕùÌõ¼þÎó²î£¨CVE-2019-11815£©

Ðû²¼Ê±¼ä 2019-05-14


¼øºÚµ£±£Íø(jhdbw)¡¤×î¾ßȨÍþΨһάȨµ£±£Æ½Ì¨


Åä¾°ÐÎò


Ñо¿Ö°Ô±ÔÚ5.0.8֮ǰµÄLinuxÄÚºËÖз¢Ã÷¾ºÕùÌõ¼þÎó²î£¨CVE-2019-11815£©¡£¡£¡£ ¡£¡£¡£¡£


ƾ֤CVSS  3.0µÄÓ°ÏìÖ¸±ê£¬£¬£¬£¬£¬£¬£¬CVE-2019-11815Îó²î¾ßÓиßÉñÃØÐÔ£¬£¬£¬£¬£¬£¬£¬ÍêÕûÐԺͿÉÓÃÐÔ£¬£¬£¬£¬£¬£¬£¬ÕâʹµÃDZÔÚ¹¥»÷Õß¿ÉÒÔ»á¼ûËùÓÐ×ÊÔ´£¬£¬£¬£¬£¬£¬£¬ÐÞ¸ÄÈκÎÎļþ¡£¡£¡£ ¡£¡£¡£¡£


ÕýÈçCommon Weakness Enumeration£¨CWE£©ÖÐËùÏêÊöµÄ£¬£¬£¬£¬£¬£¬£¬Use-After-FreeȱÏÝÊÇÓÉÓÚÔÚÄÚ´æ±»ÊͷźóʵÑéÒýÓÃÄڴ棬£¬£¬£¬£¬£¬£¬µ¼ÖÂÈí¼þÍ߽⣬£¬£¬£¬£¬£¬£¬¿ÉÖ´ÐÐí§Òâ´úÂë¡£¡£¡£ ¡£¡£¡£¡£

Ó°Ïì¹æÄ£


CVE ID  £º    CVE-2019-11815   
CNNVD£º    CNNVD-201905-195 
Îó²îÆ·¼¶£º   ÖÐΣ
Ó°Ïì¹æÄ££º   Linux kernel 5.0.8֮ǰµÄËùÓа汾

Îó²îÏêÇé


DZÔڵĹ¥»÷Õß¿ÉʹÓÃLinuxÄں˵Änet/rds/tcp.cÖеÄrds_tcp_kill_sock TCP/IPÀ´´¥·¢¾Ü¾øÐ§ÀÍ£¨DoS£©£¬£¬£¬£¬£¬£¬£¬»òÕßÔÚÒ×Êܹ¥»÷µÄϵͳÉÏÖ´ÐÐí§Òâ´úÂë¡£¡£¡£ ¡£¡£¡£¡£


¼øºÚµ£±£Íø(jhdbw)¡¤×î¾ßȨÍþΨһάȨµ£±£Æ½Ì¨


ÐÞ¸´½¨Òé


LinuxÄں˿ª·¢Ö°Ô±ÔÚ3ÔÂÏÂÑ®Ðû²¼ÁËÕë¶ÔCVE-2019-11815Îó²îµÄ²¹¶¡£¡£¡£ ¡£¡£¡£¡£¬£¬£¬£¬£¬£¬£¬²¢ÐÞ¸´ÁË4ÔÂ17ÈÕÐû²¼µÄLinuxÄÚºË5.0.8°æ±¾ÖеÄÎó²î¡£¡£¡£ ¡£¡£¡£¡£


½¨Òé¸÷Linux¿¯Ðа棨Red Hat£¬£¬£¬£¬£¬£¬£¬Ubuntu£¬£¬£¬£¬£¬£¬£¬SUSEºÍDebian£©ÐèÒªÉý¼¶ÖÁ×îаæLinuxÄںˡ£¡£¡£ ¡£¡£¡£¡£


²Î¿¼Á´½Ó


http://www.securityfocus.com/bid/108283


https://cdn.kernel.org/pub/linux/kernel/v5.x/ChangeLog-5.0.8


https://git.kernel.org/cgit/linux/kernel/git/torvalds/linux.git/commit/?id=cb66ddd156203daefb8d71158036b27b0e2caf63


https://github.com/torvalds/linux/commit/cb66ddd156203daefb8d71158036b27b0e2caf63