Vulnerability Description
A Use After Free vulnerability in wicked of SUSE Linux Enterprise Server 12, SUSE Linux Enterprise Server 15; openSUSE Leap 15.1, Factory allows remote attackers to cause DoS or potentially code execution. This issue affects: SUSE Linux Enterprise Server 12 wicked versions prior to 0.6.60-3.5.1. SUSE Linux Enterprise Server 15 wicked versions prior to 0.6.60-3.21.1. openSUSE Leap 15.1 wicked versions prior to 0.6.60-lp151.2.6.1. openSUSE Factory wicked versions prior to 0.6.62.
CVSS Score
HIGH
Affected Products
| Vendor | Product | Versions |
|---|---|---|
| Opensuse | Leap | 15.1 |
| Suse | Linux Enterprise Server | 12 |
Related Weaknesses (CWE)
References
- https://bugzilla.suse.com/show_bug.cgi?id=1160903Issue TrackingVendor Advisory
- https://bugzilla.suse.com/show_bug.cgi?id=1160903Issue TrackingVendor Advisory
FAQ
What is CVE-2019-18902?
CVE-2019-18902 is a vulnerability with a CVSS score of 7.5 (HIGH). A Use After Free vulnerability in wicked of SUSE Linux Enterprise Server 12, SUSE Linux Enterprise Server 15; openSUSE Leap 15.1, Factory allows remote attackers to cause DoS or potentially code execu...
How severe is CVE-2019-18902?
CVE-2019-18902 has been rated HIGH with a CVSS base score of 7.5/10. Review the CVSS metrics above for detailed severity breakdown.
Is there a patch for CVE-2019-18902?
Check the references section above for vendor advisories and patch information. Affected products include: Opensuse Leap, Suse Linux Enterprise Server.