An issue was discovered in the Linux kernel before 5.0.19. There is an out-of-bounds array access in __xfrm_policy_unlink, which will cause denial of service, because verify_newpolicy_info in net/xfrm/xfrm_user.c mishandles directory validation.
| Software | From | Fixed in |
|---|---|---|
| linux / linux_kernel | - | 5.0.19 |
| debian / debian_linux | 8.0 | 8.0.x |
| opensuse / leap | 15.0 | 15.0.x |
| opensuse / leap | 15.1 | 15.1.x |