← All CVEs

CVE-2019-13272

high · 7.8Actively exploited

On the CISA Known Exploited Vulnerabilities catalog

Apply updates per vendor instructions.

Added 2021-12-10Remediation due 2022-06-10

In the Linux kernel before 5.1.17, ptrace_link in kernel/ptrace.c mishandles the recording of the credentials of a process that wants to create a ptrace relationship, which allows local users to obtain root access by leveraging certain scenarios with a parent-child process relationship, where a parent drops privileges and calls execve (potentially allowing control by an attacker). One contributing factor is an object lifetime issue (which can also cause a panic). Another contributing factor is incorrect marking of a ptrace relationship as privileged, which is exploitable through (for example) Polkit's pkexec helper with PTRACE_TRACEME. NOTE: SELinux deny_ptrace might be a usable workaround in some environments.

7.8
CVSS
52.2%
EPSS (exploit prob.)
99th
EPSS percentile
2019-07-17
Published

CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H

Affected products

VendorProductAffected versions
linuxlinux_kernel>= 3.16.52, < 3.16.71
linuxlinux_kernel>= 4.1.39, < 4.2
linuxlinux_kernel>= 4.4.40, < 4.4.185
linuxlinux_kernel>= 4.8.16, < 4.9
linuxlinux_kernel>= 4.9.1, < 4.9.185
linuxlinux_kernel>= 4.10, < 4.14.133
linuxlinux_kernel>= 4.15, < 4.19.58
linuxlinux_kernel>= 4.20, < 5.1.17
debiandebian_linux8.0
debiandebian_linux9.0
debiandebian_linux10.0
fedoraprojectfedora29
canonicalubuntu_linux16.04
canonicalubuntu_linux18.04
canonicalubuntu_linux19.04
redhatenterprise_linux7.0
redhatenterprise_linux8.0
redhatenterprise_linux_for_arm_647.0_aarch64
redhatenterprise_linux_for_ibm_z_systems7.0_s390x
redhatenterprise_linux_for_real_time8
redhatenterprise_linux_for_real_time_for_nfv8.0
redhatenterprise_linux_for_real_time_for_nfv_tus8.2
redhatenterprise_linux_for_real_time_for_nfv_tus8.4
redhatenterprise_linux_for_real_time_for_nfv_tus8.6
redhatenterprise_linux_for_real_time_for_nfv_tus8.8
redhatenterprise_linux_for_real_time_tus8.2
redhatenterprise_linux_for_real_time_tus8.4
redhatenterprise_linux_for_real_time_tus8.6
redhatenterprise_linux_for_real_time_tus8.8
netappaff_a700s_firmwareall versions
netappaff_a700sall versions
netapph410c_firmwareall versions
netapph410call versions
netapph610s_firmwareall versions
netapph610sall versions
netappactive_iq_unified_managerall versions
netappe-series_performance_analyzerall versions
netappe-series_santricity_os_controller>= 11.0.0, <= 11.60.3
netapphci_management_nodeall versions
netappservice_processorall versions

Check a specific version with /api/v1/cve/match.

References

Query this programmatically:

curl https://evil-db.io/api/v1/cve/CVE-2019-13272