Jonathan Looney discovered that the TCP retransmission queue implementation in tcp_fragment in the Linux kernel could be fragmented when handling certain TCP Selective Acknowledgment (SACK) sequences. A remote attacker could use this to cause a denial of service. This has been fixed in stable kernel releases 4.4.182, 4.9.182, 4.14.127, 4.19.52, 5.1.11, and is fixed in commit f070ef2ac66716357066b683fb0baf55f8191a2e.
[
{
"events": [
{
"introduced": "0"
},
{
"fixed": "4.4.182"
}
]
},
{
"events": [
{
"introduced": "4.5"
},
{
"fixed": "4.9.182"
}
]
},
{
"events": [
{
"introduced": "4.10"
},
{
"fixed": "4.14.127"
}
]
},
{
"events": [
{
"introduced": "4.15"
},
{
"fixed": "4.19.52"
}
]
},
{
"events": [
{
"introduced": "4.20"
},
{
"fixed": "5.1.11"
}
]
},
{
"events": [
{
"introduced": "11.5.2"
},
{
"last_affected": "11.6.4"
}
]
},
{
"events": [
{
"introduced": "12.1.0"
},
{
"last_affected": "12.1.4"
}
]
},
{
"events": [
{
"introduced": "13.1.0"
},
{
"last_affected": "13.1.1"
}
]
},
{
"events": [
{
"introduced": "14.0.0"
},
{
"last_affected": "14.1.0"
}
]
},
{
"events": [
{
"introduced": "0"
},
{
"last_affected": "15.0.0"
}
]
},
{
"events": [
{
"introduced": "11.5.2"
},
{
"last_affected": "11.6.4"
}
]
},
{
"events": [
{
"introduced": "12.1.0"
},
{
"last_affected": "12.1.4"
}
]
},
{
"events": [
{
"introduced": "13.1.0"
},
{
"last_affected": "13.1.1"
}
]
},
{
"events": [
{
"introduced": "14.0.0"
},
{
"last_affected": "14.1.0"
}
]
},
{
"events": [
{
"introduced": "0"
},
{
"last_affected": "15.0.0"
}
]
},
{
"events": [
{
"introduced": "11.5.2"
},
{
"last_affected": "11.6.4"
}
]
},
{
"events": [
{
"introduced": "12.1.0"
},
{
"last_affected": "12.1.4"
}
]
},
{
"events": [
{
"introduced": "13.1.0"
},
{
"last_affected": "13.1.1"
}
]
},
{
"events": [
{
"introduced": "14.0.0"
},
{
"last_affected": "14.1.0"
}
]
},
{
"events": [
{
"introduced": "0"
},
{
"last_affected": "15.0.0"
}
]
},
{
"events": [
{
"introduced": "11.5.2"
},
{
"last_affected": "11.6.4"
}
]
},
{
"events": [
{
"introduced": "12.1.0"
},
{
"last_affected": "12.1.4"
}
]
},
{
"events": [
{
"introduced": "13.1.0"
},
{
"last_affected": "13.1.1"
}
]
},
{
"events": [
{
"introduced": "14.0.0"
},
{
"last_affected": "14.1.0"
}
]
},
{
"events": [
{
"introduced": "0"
},
{
"last_affected": "15.0.0"
}
]
},
{
"events": [
{
"introduced": "11.5.2"
},
{
"last_affected": "11.6.4"
}
]
},
{
"events": [
{
"introduced": "12.1.0"
},
{
"last_affected": "12.1.4"
}
]
},
{
"events": [
{
"introduced": "13.1.0"
},
{
"last_affected": "13.1.1"
}
]
},
{
"events": [
{
"introduced": "14.0.0"
},
{
"last_affected": "14.1.0"
}
]
},
{
"events": [
{
"introduced": "0"
},
{
"last_affected": "15.0.0"
}
]
},
{
"events": [
{
"introduced": "11.5.2"
},
{
"last_affected": "11.6.4"
}
]
},
{
"events": [
{
"introduced": "12.1.0"
},
{
"last_affected": "12.1.4"
}
]
},
{
"events": [
{
"introduced": "13.1.0"
},
{
"last_affected": "13.1.1"
}
]
},
{
"events": [
{
"introduced": "14.0.0"
},
{
"last_affected": "14.1.0"
}
]
},
{
"events": [
{
"introduced": "0"
},
{
"last_affected": "15.0.0"
}
]
},
{
"events": [
{
"introduced": "11.5.2"
},
{
"last_affected": "11.6.4"
}
]
},
{
"events": [
{
"introduced": "12.1.0"
},
{
"last_affected": "12.1.4"
}
]
},
{
"events": [
{
"introduced": "13.1.0"
},
{
"last_affected": "13.1.1"
}
]
},
{
"events": [
{
"introduced": "14.0.0"
},
{
"last_affected": "14.1.0"
}
]
},
{
"events": [
{
"introduced": "0"
},
{
"last_affected": "15.0.0"
}
]
},
{
"events": [
{
"introduced": "11.5.2"
},
{
"last_affected": "11.6.4"
}
]
},
{
"events": [
{
"introduced": "12.1.0"
},
{
"last_affected": "12.1.4"
}
]
},
{
"events": [
{
"introduced": "13.1.0"
},
{
"last_affected": "13.1.1"
}
]
},
{
"events": [
{
"introduced": "14.0.0"
},
{
"last_affected": "14.1.0"
}
]
},
{
"events": [
{
"introduced": "0"
},
{
"last_affected": "15.0.0"
}
]
},
{
"events": [
{
"introduced": "11.5.2"
},
{
"last_affected": "11.6.4"
}
]
},
{
"events": [
{
"introduced": "12.1.0"
},
{
"last_affected": "12.1.4"
}
]
},
{
"events": [
{
"introduced": "13.1.0"
},
{
"last_affected": "13.1.1"
}
]
},
{
"events": [
{
"introduced": "14.0.0"
},
{
"last_affected": "14.1.0"
}
]
},
{
"events": [
{
"introduced": "0"
},
{
"last_affected": "15.0.0"
}
]
},
{
"events": [
{
"introduced": "11.5.2"
},
{
"last_affected": "11.6.4"
}
]
},
{
"events": [
{
"introduced": "12.1.0"
},
{
"last_affected": "12.1.4"
}
]
},
{
"events": [
{
"introduced": "13.1.0"
},
{
"last_affected": "13.1.1"
}
]
},
{
"events": [
{
"introduced": "14.0.0"
},
{
"last_affected": "14.1.0"
}
]
},
{
"events": [
{
"introduced": "0"
},
{
"last_affected": "15.0.0"
}
]
},
{
"events": [
{
"introduced": "11.5.2"
},
{
"last_affected": "11.6.4"
}
]
},
{
"events": [
{
"introduced": "12.1.0"
},
{
"last_affected": "12.1.4"
}
]
},
{
"events": [
{
"introduced": "13.1.0"
},
{
"last_affected": "13.1.1"
}
]
},
{
"events": [
{
"introduced": "14.0.0"
},
{
"last_affected": "14.1.0"
}
]
},
{
"events": [
{
"introduced": "0"
},
{
"last_affected": "15.0.0"
}
]
},
{
"events": [
{
"introduced": "11.5.2"
},
{
"last_affected": "11.6.4"
}
]
},
{
"events": [
{
"introduced": "12.1.0"
},
{
"last_affected": "12.1.4"
}
]
},
{
"events": [
{
"introduced": "13.1.0"
},
{
"last_affected": "13.1.1"
}
]
},
{
"events": [
{
"introduced": "14.0.0"
},
{
"last_affected": "14.1.0"
}
]
},
{
"events": [
{
"introduced": "0"
},
{
"last_affected": "15.0.0"
}
]
},
{
"events": [
{
"introduced": "11.5.2"
},
{
"last_affected": "11.6.4"
}
]
},
{
"events": [
{
"introduced": "12.1.0"
},
{
"last_affected": "12.1.4"
}
]
},
{
"events": [
{
"introduced": "13.1.0"
},
{
"last_affected": "13.1.1"
}
]
},
{
"events": [
{
"introduced": "14.0.0"
},
{
"last_affected": "14.1.0"
}
]
},
{
"events": [
{
"introduced": "0"
},
{
"last_affected": "15.0.0"
}
]
},
{
"events": [
{
"introduced": "0"
},
{
"last_affected": "12.04"
}
]
},
{
"events": [
{
"introduced": "0"
},
{
"last_affected": "14.04"
}
]
},
{
"events": [
{
"introduced": "0"
},
{
"last_affected": "16.04"
}
]
},
{
"events": [
{
"introduced": "0"
},
{
"last_affected": "18.04"
}
]
},
{
"events": [
{
"introduced": "0"
},
{
"last_affected": "18.10"
}
]
},
{
"events": [
{
"introduced": "0"
},
{
"last_affected": "19.04"
}
]
},
{
"events": [
{
"introduced": "0"
},
{
"last_affected": "5.0"
}
]
},
{
"events": [
{
"introduced": "0"
},
{
"last_affected": "6.0"
}
]
},
{
"events": [
{
"introduced": "0"
},
{
"last_affected": "7.0"
}
]
},
{
"events": [
{
"introduced": "0"
},
{
"last_affected": "8.0"
}
]
},
{
"events": [
{
"introduced": "0"
},
{
"last_affected": "6.5"
}
]
},
{
"events": [
{
"introduced": "0"
},
{
"last_affected": "6.6"
}
]
},
{
"events": [
{
"introduced": "0"
},
{
"last_affected": "7.4"
}
]
},
{
"events": [
{
"introduced": "0"
},
{
"last_affected": "7.5"
}
]
},
{
"events": [
{
"introduced": "0"
},
{
"last_affected": "2.0"
}
]
},
{
"events": [
{
"introduced": "5.0.0"
},
{
"last_affected": "5.1.0"
}
]
}
]
"https://storage.googleapis.com/cve-osv-conversion/osv-output/CVE-2019-11478.json"