An issue was discovered in the Linux kernel before 5.0.7. A NULL pointer dereference can occur when megasas_create_frame_pool() fails in megasas_alloc_cmds() in drivers/scsi/megaraid/megaraid_sas_base.c. This causes a Denial of Service, related to a use-after-free.
| Software | From | Fixed in |
|---|---|---|
| linux / linux_kernel | 3.17 | 3.18.139 |
| linux / linux_kernel | 3.19 | 4.4.179 |
| linux / linux_kernel | 4.5 | 4.9.168 |
| linux / linux_kernel | 4.10 | 4.14.111 |
| linux / linux_kernel | 4.15 | 4.19.34 |
| linux / linux_kernel | 4.20 | 5.0.7 |
| linux / linux_kernel | - | 3.16.69 |
| canonical / ubuntu_linux | 18.04 | 18.04.x |
| canonical / ubuntu_linux | 19.04 | 19.04.x |
| canonical / ubuntu_linux | 14.04 | 14.04.x |
| canonical / ubuntu_linux | 16.04 | 16.04.x |
| debian / debian_linux | 8.0 | 8.0.x |