Hide Forgot
A vulnerability was found in Linux Kernel, where a Heap Overflow was found in mwifiex_set_wmm_params() function of Marvell Wifi Driver. Reference: https://www.openwall.com/lists/oss-security/2019/08/28/1 https://lore.kernel.org/linux-wireless/20190828020751.13625-1-huangwenabc@gmail.com/ https://bugzilla.redhat.com/show_bug.cgi?id=CVE-2019-14815
Acknowledgments: Name: Huangwen (ADLab of Venustech)
For some reason, I'm not able to access bug 1744138, which I'd assume is the RHEL-8-specific bug I need to address in my wireless update... Can someone please take a look at this? Prepping a big wireless update for RHEL-8 right now, and want to include all these CVE bugs.
FWIW, I cannot see bug 1744138 either.
Created kernel tracking bugs for this issue: Affects: fedora-all [bug 1776225]
These are not rhel8 bugs, thats a task bug that is private to product security team. I'll be making the trackers for this today.
Clearing needinfo based on comment 7
This was fixed for Fedora with the 5.2.17 stable kernel updates.
This issue has been addressed in the following products: Red Hat Enterprise Linux 7 Via RHSA-2020:0174 https://access.redhat.com/errata/RHSA-2020:0174
This bug is now closed. Further updates for individual products will be reflected on the CVE page(s): https://access.redhat.com/security/cve/cve-2019-14815
This issue has been addressed in the following products: Red Hat Enterprise Linux 8 Via RHSA-2020:0328 https://access.redhat.com/errata/RHSA-2020:0328
This issue has been addressed in the following products: Red Hat Enterprise Linux 8 Via RHSA-2020:0339 https://access.redhat.com/errata/RHSA-2020:0339