HIGH · 7.0

CVE-2019-18683

An issue was discovered in drivers/media/platform/vivid in the Linux kernel through 5.3.8. It is exploitable for privilege escalation on some Linux distributions where local users have /dev/video0 acc...

Vulnerability Description

An issue was discovered in drivers/media/platform/vivid in the Linux kernel through 5.3.8. It is exploitable for privilege escalation on some Linux distributions where local users have /dev/video0 access, but only if the driver happens to be loaded. There are multiple race conditions during streaming stopping in this driver (part of the V4L2 subsystem). These issues are caused by wrong mutex locking in vivid_stop_generating_vid_cap(), vivid_stop_generating_vid_out(), sdr_cap_stop_streaming(), and the corresponding kthreads. At least one of these race conditions leads to a use-after-free.

CVSS Score

7.0

HIGH

CVSS:3.1/AV:L/AC:H/PR:L/UI:N/S:U/C:H/I:H/A:H
Attack Vector
LOCAL
Attack Complexity
HIGH
Privileges Required
LOW
User Interaction
NONE
Scope
UNCHANGED
Confidentiality
HIGH
Integrity
HIGH
Availability
HIGH

Affected Products

VendorProductVersions
LinuxLinux Kernel>= 3.18, < 4.4.204
CanonicalUbuntu Linux14.04
OpensuseLeap15.1
NetappActive Iq Unified Manager-
NetappCloud Backup-
NetappData Availability Services-
NetappE-Series Santricity Os Controller>= 11.0.0, <= 11.70.1
NetappElement Software-
NetappHci Management Node-
NetappSolidfire-
NetappSteelstore Cloud Integrated Storage-
BroadcomFabric Operating System-
NetappA700S Firmware-
NetappA700S-
Netapp8300 Firmware-
Netapp8300-
Netapp8700 Firmware-
Netapp8700-
NetappA400 Firmware-
NetappA400-

Related Weaknesses (CWE)

References

FAQ

What is CVE-2019-18683?

CVE-2019-18683 is a vulnerability with a CVSS score of 7.0 (HIGH). An issue was discovered in drivers/media/platform/vivid in the Linux kernel through 5.3.8. It is exploitable for privilege escalation on some Linux distributions where local users have /dev/video0 acc...

How severe is CVE-2019-18683?

CVE-2019-18683 has been rated HIGH with a CVSS base score of 7.0/10. Review the CVSS metrics above for detailed severity breakdown.

Is there a patch for CVE-2019-18683?

Check the references section above for vendor advisories and patch information. Affected products include: Linux Linux Kernel, Canonical Ubuntu Linux, Opensuse Leap, Netapp Active Iq Unified Manager, Netapp Cloud Backup.