Information disclosure in Linux kernel - CVE-2019-14615
Published: January 17, 2020 / Updated: June 1, 2020
Linux kernel
Detailed vulnerability description
The vulnerability allows a local non-authenticated attacker to gain access to sensitive information.
Insufficient control flow in certain data structures for some Intel(R) Processors with Intel(R) Processor Graphics may allow an unauthenticated user to potentially enable information disclosure via local access.
How to mitigate CVE-2019-14615
Sources
- https://www.kernel.org/pub/linux/kernel/v4.x/ChangeLog-4.4.210
- https://www.kernel.org/pub/linux/kernel/v4.x/ChangeLog-4.9.210
- https://www.kernel.org/pub/linux/kernel/v4.x/ChangeLog-4.14.165
- https://www.kernel.org/pub/linux/kernel/v4.x/ChangeLog-4.19.96
- https://cdn.kernel.org/pub/linux/kernel/v5.x/ChangeLog-5.4.12
- https://cdn.kernel.org/pub/linux/kernel/v5.x/ChangeLog-5.5