← Back to browse · API

CVE-2019-14901

Severity
HIGH
CVSS
8.8
EPSS
0.16908
Risk score
41.12
CISA KEV
No
PoC
No
Published
2019-11-29
Modified
2024-08-05
First seen
2026-08-07
Aliases
EUVD-2019-6006, GHSA-6MPR-24PX-GQ7M
Products
Linux:Kernel all kernel versions 3.x.x and 4.x.x before 4.18.0
Sources
euvd EUVD-2019-6006

Description

A heap overflow flaw was found in the Linux kernel, all versions 3.x.x and 4.x.x before 4.18.0, in Marvell WiFi chip driver. The vulnerability allows a remote attacker to cause a system crash, resulting in a denial of service, or execute arbitrary code. The highest threat with this vulnerability is with the availability of the system. If code execution occurs, the code will run with the permissions of root. This will affect both confidentiality and integrity of files on the system.

References