CVE-2019-7308

Updated: 2023-12-06

CWE: Numeric Errors

Description:

kernel/bpf/verifier.c in the Linux kernel before 4.20.6 performs undesirable out-of-bounds speculation on pointer arithmetic in various cases, including cases of different branches with different state or limits to sanitize, leading to side-channel attacks.

CVSS3: 5.6


Vendor State

OS Vendor version Errata
Ubuntu 18.04 4.15.0-47.50 USN-3931-1
Ubuntu 18.04 AWS 4.15.0-1035.37 USN-3931-1
Ubuntu 18.04 HWE 4.18.0-17.18~18.04.1 USN-3930-2
Ubuntu 16.04 HWE 4.15.0-47.50~16.04.1 USN-3931-2
Ubuntu 16.04 AWS HWE 4.15.0-1035.37~16.04.1 USN-3931-2
Amazon Linux 1 4.14.114-82.97.amzn1 ALAS-2019-1201
Amazon Linux 2 4.14.231-173.360.amzn2 ALAS-2021-1627
Ubuntu 18.04 GCP 4.15.0-1029.31 USN-3931-1
Ubuntu 16.04 GCP 4.15.0-1029.31~16.04.1 USN-3931-2
Oracle Linux 7 UEK 5 4.14.35-1902.304.6.el7uek ELSA-2020-5755
Ubuntu 18.04 Azure 4.18.0-1014.14~18.04.1 USN-3930-2
Ubuntu 16.04 Azure 4.15.0-1041.45 USN-3931-2

KernelCare State

OS Original kernel version State
Ubuntu 18.04
4.15.0-42.45 show all hide all
4.15.0-33.36 4.15.0-44.47 4.15.0-24.26 4.15.0-36.39 4.15.0-34.37 4.15.0-39.42 4.15.0-43.46 4.15.0-32.35 4.15.0-46.49 4.15.0-20.21 4.15.0-29.31 4.15.0-31.33 4.15.0-35.38 4.15.0-38.41 4.15.0-45.48 4.15.0-23.25 4.15.0-22.24 4.15.0-30.32
Released
Ubuntu 18.04 AWS
4.15.0-1027.27 show all hide all
4.15.0-1021.21 4.15.0-1031.33 4.15.0-1032.34 4.15.0-1023.23 4.15.0-1029.30 4.15.0-1034.36 4.15.0-1033.35
Released
Ubuntu 18.04 HWE
Ready For Release
Ubuntu 16.04 HWE
4.15.0-24.26~16.04.1 show all hide all
4.15.0-34.37~16.04.1 4.15.0-39.42~16.04.1 4.15.0-42.45~16.04.1 4.15.0-46.49~16.04.1 4.15.0-33.36~16.04.1 4.15.0-45.48~16.04.1 4.15.0-30.32~16.04.1 4.15.0-36.39~16.04.1 4.15.0-29.31~16.04.1 4.15.0-35.38~16.04.1 4.15.0-38.41~16.04.1 4.15.0-32.35~16.04.1 4.15.0-43.46~16.04.1
Released
Ubuntu 16.04 AWS HWE
4.15.0-1030.31~16.04.1 show all hide all
4.15.0-1033.35~16.04.1 4.15.0-1032.34~16.04.1 4.15.0-1031.33~16.04.1
Released
Amazon Linux 1
4.14.106-79.86.amzn1 show all hide all
4.14.101-75.76.amzn1 4.14.62-65.117.amzn1 4.14.77-69.57.amzn1 4.14.104-78.84.amzn1 4.14.109-80.92.amzn1 4.14.70-67.55.amzn1 4.14.77-70.82.amzn1 4.14.97-74.72.amzn1 4.14.94-73.73.amzn1 4.14.72-68.55.amzn1
Released
Amazon Linux 2
4.14.72-73.55.amzn2 show all hide all
4.14.62-70.117.amzn2 4.14.106-97.85.amzn2 4.14.42-61.37.amzn2 4.14.26-54.32.amzn2 4.14.88-88.73.amzn2 4.14.51-66.38.amzn2 4.14.104-95.84.amzn2 4.14.77-80.57.amzn2 4.14.101-91.76.amzn2 4.14.67-71.56.amzn2 4.14.33-59.34.amzn2 4.14.94-89.73.amzn2 4.14.97-90.72.amzn2 4.14.88-88.76.amzn2 4.14.109-99.92.amzn2 4.14.70-72.55.amzn2
Released
Proxmox VE 5
4.15.18-7-pve-4.15.18-27 show all hide all
4.15.10-1-pve_4.15.10-4 4.15.15-1-pve_4.15.15-6 4.15.17-1-pve_4.15.17-9 4.15.17-2-pve_4.15.17-10 4.15.18-1-pve_4.15.18-16 4.15.18-1-pve_4.15.18-17 4.15.18-1-pve_4.15.18-19 4.15.18-10-pve_4.15.18-31 4.15.18-11-pve_4.15.18-34 4.15.18-2-pve_4.15.18-21 4.15.18-4-pve_4.15.18-23 4.15.18-7-pve_4.15.18-26 4.15.18-9-pve_4.15.18-30 4.15.3-1-pve_4.15.3-1 4.15.18-11-pve_4.15.18-33 4.15.18-6-pve_4.15.18-25 4.15.18-8-pve_4.15.18-28 4.15.18-1-pve_4.15.18-15 4.15.18-2-pve_4.15.18-20 4.15.17-3-pve_4.15.17-12 4.15.18-10-pve_4.15.18-32 4.15.18-3-pve_4.15.18-22 4.15.18-5-pve_4.15.18-24
Released
Ubuntu 18.04 GCP
4.15.0-1010.10 show all hide all
4.15.0-1015.15 4.15.0-1025.26 4.15.0-1024.25 4.15.0-1018.19 4.15.0-1026.27 4.15.0-1028.29 4.15.0-1021.22 4.15.0-1017.18 4.15.0-1009.9 4.15.0-1008.8 4.15.0-1006.6 4.15.0-1014.14 4.15.0-1027.28 4.15.0-1019.20
Released
Ubuntu 16.04 GCP
4.15.0-1024.25~16.04.2 show all hide all
4.15.0-1021.22~16.04.1 4.15.0-1019.20~16.04.1 4.15.0-1017.18~16.04.1 4.15.0-1018.19~16.04.2 4.15.0-1028.29~16.04.1 4.15.0-1014.14~16.04.1 4.15.0-1026.27~16.04.1 4.15.0-1025.26~16.04.1 4.15.0-1027.28~16.04.1 4.15.0-1015.15~16.04.1
Released
Endurance 7 eig 4.14
4.14.68-103.ELK.el6 show all hide all
4.14.68-103.ELK.el7 4.14.93-162.ELK.el6 4.14.93-162.ELK.el7 4.14.94-164.ELK.el6 4.14.94-164.ELK.el7
Released
Proofpoint
Ready For Release
Oracle Linux 7 UEK 5
4.14.35-1902.8.4.el7uek show all hide all
4.14.35-1902.11.3.el7uek 4.14.35-1902.2.0.el7uek 4.14.35-1844.2.5.el7uek 4.14.35-1902.3.1.el7uek 4.14.35-1902.302.2.el7uek 4.14.35-1902.10.7.el7uek 4.14.35-1902.10.8.el7uek 4.14.35-1902.303.4.1.el7uek 4.14.35-1844.3.2.el7uek 4.14.35-1818.4.5.el7uek 4.14.35-1844.4.5.el7uek 4.14.35-1902.7.3.el7uek 4.14.35-1902.301.1.el7uek 4.14.35-1818.5.4.el7uek 4.14.35-1818.2.1.el7uek 4.14.35-1818.4.6.el7uek 4.14.35-1818.4.7.el7uek 4.14.35-1844.0.7.el7uek 4.14.35-1844.4.5.2.el7uek 4.14.35-1902.0.18.el7uek 4.14.35-1902.10.2.1.el7uek 4.14.35-1902.10.4.1.el7uek 4.14.35-1902.10.4.2.el7uek 4.14.35-1902.10.4.el7uek 4.14.35-1902.300.11.el7uek 4.14.35-1902.5.1.5.el7uek 4.14.35-1902.5.2.1.el7uek 4.14.35-1902.5.2.2.el7uek 4.14.35-1902.5.2.el7uek 4.14.35-1902.7.3.1.el7uek 4.14.35-1902.9.2.el7uek 4.14.35-1902.11.3.1.el7uek 4.14.35-1902.3.2.el7uek 4.14.35-1902.303.5.3.el7uek 4.14.35-1902.5.1.4.el7uek 4.14.35-1844.1.3.el7uek 4.14.35-1902.6.6.el7uek 4.14.35-1818.3.3.el7uek 4.14.35-1902.4.8.el7uek 4.14.35-1844.5.3.el7uek
Released
Ubuntu 18.04 Azure
4.15.0-1014.14 show all hide all
4.15.0-1037.39 4.15.0-1031.32 4.15.0-1025.26 4.18.0-1011.11~18.04.1 4.15.0-1012.12 4.15.0-1021.21 4.15.0-1022.23 4.18.0-1013.13~18.04.1 4.15.0-1009.9 4.15.0-1018.18 4.15.0-1028.29 4.15.0-1030.31 4.15.0-1032.33 4.15.0-1035.36 4.15.0-1019.19 4.15.0-1023.24 4.15.0-1013.13 4.15.0-1036.38
Released
Ubuntu 16.04 Azure
4.15.0-1036.38~16.04.1 show all hide all
4.15.0-1025.26~16.04.1 4.15.0-1037.39~16.04.1 4.15.0-1019.19~16.04.1 4.15.0-1023.24~16.04.1 4.15.0-1014.14~16.04.1 4.15.0-1022.22~16.04.1 4.15.0-1035.36~16.04.1 4.15.0-1021.21~16.04.1 4.15.0-1031.32~16.04.1 4.15.0-1040.44 4.15.0-1018.18~16.04.1 4.15.0-1028.29~16.04.1 4.15.0-1030.31~16.04.1 4.15.0-1032.33~16.04.1 4.15.0-1039.43 4.15.0-1013.13~16.04.2
Released