Unknown
CVE-2019-3900
CVE ID
AttackerKB requires a CVE ID in order to pull vulnerability data and references from the CVE list and the National Vulnerability Database. If available, please supply below:
Add References:
CVE-2019-3900
MITRE ATT&CK
Collection
Command and Control
Credential Access
Defense Evasion
Discovery
Execution
Exfiltration
Impact
Initial Access
Lateral Movement
Persistence
Privilege Escalation
Topic Tags
Description
An infinite loop issue was found in the vhost_net kernel module in Linux Kernel up to and including v5.1-rc6, while handling incoming packets in handle_rx(). It could occur if one end sends packets faster than the other end can process them. A guest user, maybe remote one, could use this flaw to stall the vhost_net kernel thread, resulting in a DoS scenario.
Add Assessment
No one has assessed this topic. Be the first to add your voice to the community.
CVSS V3 Severity and Metrics
General Information
Vendors
- canonical,
- debian,
- fedoraproject,
- linux,
- netapp,
- oracle,
- redhat
Products
- active iq unified manager for vmware vsphere,
- cn1610 firmware -,
- debian linux 10.0,
- debian linux 8.0,
- debian linux 9.0,
- enterprise linux 6.0,
- enterprise linux 7.0,
- fedora 28,
- fedora 29,
- fedora 30,
- hci management node -,
- linux kernel,
- sd-wan edge 8.2,
- snapprotect -,
- solidfire -,
- storage replication adapter for clustered data ontap for vmware vsphere,
- ubuntu linux 16.04,
- ubuntu linux 18.04,
- ubuntu linux 19.04,
- vasa provider for clustered data ontap,
- virtual storage console for vmware vsphere
References
Advisory
Miscellaneous
Additional Info
Technical Analysis
Report as Emergent Threat Response
Report as Exploited in the Wild
CVE ID
AttackerKB requires a CVE ID in order to pull vulnerability data and references from the CVE list and the National Vulnerability Database. If available, please supply below: