Stack overflow in XHCI for EDK II may allow an unauthenticated user to potentially enable denial of service via local access.

Published at
2019-03-27
1026 days ago
Modified
2021-04-29
262 days ago
2019
Year
The year of the turtle

https://edk2-docs.gitbooks.io/security-advisory/content/xhci-stack-local-stack-overflow.html

CONFIRM:https://edk2-docs.gitbooks.io/security-advisory/content/xhci-stack-local-stack-overflow.html

https://lists.fedoraproject.org/archives/list/package-announce@lists.fedoraproject.org/message/TQYVZRFEXSN3KS43AVH4D7QX553EZQYP/

FEDORA:FEDORA-2019-d47a9d4b8b

https://lists.debian.org/debian-lts-announce/2021/04/msg00032.html

MLIST:[debian-lts-announce] 20210429 [SECURITY] [DLA 2645-1] edk2 security update

https://access.redhat.com/errata/RHSA-2019:2125

REDHAT:RHSA-2019:2125

https://access.redhat.com/errata/RHSA-2019:2437

REDHAT:RHSA-2019:2437

http://lists.opensuse.org/opensuse-security-announce/2019-05/msg00019.html

SUSE:openSUSE-SU-2019:1352

http://lists.opensuse.org/opensuse-security-announce/2019-05/msg00046.html

SUSE:openSUSE-SU-2019:1425

Vulnerability RAW

{
	"Title": {
		"_text": "CVE-2019-0161"
	},
	"Notes": {
		"Note": [
			{
				"_text": "Stack overflow in XHCI for EDK II may allow an unauthenticated user to potentially enable denial of service via local access."
			},
			{
				"_text": "2019-03-27"
			},
			{
				"_text": "2021-04-29"
			}
		]
	},
	"CVE": {
		"_text": "CVE-2019-0161"
	},
	"References": {
		"Reference": [
			{
				"URL": {
					"_text": "https://edk2-docs.gitbooks.io/security-advisory/content/xhci-stack-local-stack-overflow.html"
				},
				"Description": {
					"_text": "CONFIRM:https://edk2-docs.gitbooks.io/security-advisory/content/xhci-stack-local-stack-overflow.html"
				}
			},
			{
				"URL": {
					"_text": "https://lists.fedoraproject.org/archives/list/package-announce@lists.fedoraproject.org/message/TQYVZRFEXSN3KS43AVH4D7QX553EZQYP/"
				},
				"Description": {
					"_text": "FEDORA:FEDORA-2019-d47a9d4b8b"
				}
			},
			{
				"URL": {
					"_text": "https://lists.debian.org/debian-lts-announce/2021/04/msg00032.html"
				},
				"Description": {
					"_text": "MLIST:[debian-lts-announce] 20210429 [SECURITY] [DLA 2645-1] edk2 security update"
				}
			},
			{
				"URL": {
					"_text": "https://access.redhat.com/errata/RHSA-2019:2125"
				},
				"Description": {
					"_text": "REDHAT:RHSA-2019:2125"
				}
			},
			{
				"URL": {
					"_text": "https://access.redhat.com/errata/RHSA-2019:2437"
				},
				"Description": {
					"_text": "REDHAT:RHSA-2019:2437"
				}
			},
			{
				"URL": {
					"_text": "http://lists.opensuse.org/opensuse-security-announce/2019-05/msg00019.html"
				},
				"Description": {
					"_text": "SUSE:openSUSE-SU-2019:1352"
				}
			},
			{
				"URL": {
					"_text": "http://lists.opensuse.org/opensuse-security-announce/2019-05/msg00046.html"
				},
				"Description": {
					"_text": "SUSE:openSUSE-SU-2019:1425"
				}
			}
		]
	}
}