fs/ext4/extents.c in the Linux kernel through 5.1.2 does not zero out the unused memory region in the extent tree block, which might allow local users to obtain sensitive information by reading uninitialized data in the filesystem.
"https://storage.googleapis.com/cve-osv-conversion/osv-output/CVE-2019-11833.json"
[
{
"signature_type": "Line",
"signature_version": "v1",
"source": "https://github.com/torvalds/linux/commit/592acbf16821288ecdc4192c47e3774a4c48bb64",
"digest": {
"line_hashes": [
"141275319230594801790009592047967124848",
"214383835510748622823352666010302709927",
"258282801693259527252271870575417755965",
"334216707014170839107648629287144256683",
"207116441210466754683823554108383435576",
"76677111726523805451361134693604128447",
"339906038464622506440719063569138353146",
"64581927591166478060115421939599256769",
"18855218647360306478786021940000442038",
"76677111726523805451361134693604128447",
"339906038464622506440719063569138353146",
"301967275981164678278790127125512947327",
"310720648720669190141688385092653643891",
"231675013107260604748994036227982051871",
"15665928286008169135958352168616641816",
"108127122393924134168306939289362267785",
"4928155573497319274691911190347723748",
"47572938451422767030280850289837046922",
"127384760388031651766961650826143282496",
"245355127290418947995694722416359918677"
],
"threshold": 0.9
},
"id": "CVE-2019-11833-4ff59225",
"deprecated": false,
"target": {
"file": "fs/ext4/extents.c"
}
},
{
"signature_type": "Function",
"signature_version": "v1",
"source": "https://github.com/torvalds/linux/commit/592acbf16821288ecdc4192c47e3774a4c48bb64",
"digest": {
"function_hash": "237868579027295096849972247328863711917",
"length": 4722.0
},
"id": "CVE-2019-11833-527bd88e",
"deprecated": false,
"target": {
"file": "fs/ext4/extents.c",
"function": "ext4_ext_split"
}
},
{
"signature_type": "Function",
"signature_version": "v1",
"source": "https://github.com/torvalds/linux/commit/592acbf16821288ecdc4192c47e3774a4c48bb64",
"digest": {
"function_hash": "209804921998871617850448714004304922047",
"length": 1692.0
},
"id": "CVE-2019-11833-ed7f4d96",
"deprecated": false,
"target": {
"file": "fs/ext4/extents.c",
"function": "ext4_ext_grow_indepth"
}
}
]