kernel/bpf/verifier.c in the Linux kernel before 4.20.6 performs undesirable out-of-bounds speculation on pointer arithmetic in various cases, including cases of different branches with different state or limits to sanitize, leading to side-channel attacks.
History

No history.

cve-icon MITRE Information

Status: PUBLISHED

Assigner: mitre

Published: 2019-02-01T22:00:00

Updated: 2019-10-09T19:06:33

Reserved: 2019-02-01T00:00:00


Link: CVE-2019-7308

JSON object: View

cve-icon NVD Information

Status : Modified

Published: 2019-02-01T22:29:00.283

Modified: 2023-11-07T03:13:22.360


Link: CVE-2019-7308

JSON object: View

cve-icon Redhat Information

No data.

CWE