llcpsockcreate in net/nfc/llcpsock.c in the AFNFC network module in the Linux kernel through 5.3.2 does not enforce CAPNETRAW, which means that unprivileged users can create a raw socket, aka CID-3a359798b176.
"https://storage.googleapis.com/cve-osv-conversion/osv-output/CVE-2019-17056.json"
[
{
"id": "CVE-2019-17056-0ef3f6e6",
"target": {
"function": "llcp_sock_create",
"file": "net/nfc/llcp_sock.c"
},
"signature_version": "v1",
"deprecated": false,
"source": "https://git.kernel.org/pub/scm/linux/kernel/git/torvalds/linux.git@3a359798b176183ef09efb7a3dc59abad1cc7104",
"digest": {
"function_hash": "308767619093512392491319880233416368367",
"length": 481.0
},
"signature_type": "Function"
},
{
"id": "CVE-2019-17056-6f8bc7d6",
"target": {
"file": "net/nfc/llcp_sock.c"
},
"signature_version": "v1",
"deprecated": false,
"source": "https://git.kernel.org/pub/scm/linux/kernel/git/torvalds/linux.git@3a359798b176183ef09efb7a3dc59abad1cc7104",
"digest": {
"threshold": 0.9,
"line_hashes": [
"106910544387127805254528153867234387932",
"108415433523135816936074015333737356650",
"305661826548669376118686955312888850149",
"251466237670397464442058923742404353477",
"123076817898684701008188576586895808335",
"47696226647736502116852200466324941202",
"140097376397823192121198237613339504660"
]
},
"signature_type": "Line"
}
]