Lucene search

K
redhatcveRedhat.comRH:CVE-2019-19528
HistoryApr 06, 2020 - 11:04 a.m.

CVE-2019-19528

2020-04-0611:04:32
redhat.com
access.redhat.com
21

0.001 Low

EPSS

Percentile

47.9%

A use-after-free flaw was found in iowarrior_disconnect in iowarrior USB driver module were a flag was simultaneously modified causing a race between a device open and disconnect. This flaw could allow a physical attacker to cause a denial of service (DoS) attack. This vulnerability could even lead to a kernel information leak problem.

Mitigation

This flaw can be mitigated by preventing the affected USB IO-Warrior driver (iowarrior) kernel module from loading during the boot time, ensure the module is added into the blacklist file.

Refer:    
How do I blacklist a kernel module to prevent it from loading automatically?   
https://access.redhat.com/solutions/41278