VYPR
Medium severity5.5NVD Advisory· Published Aug 15, 2019· Updated Jun 17, 2026

CVE-2019-10140

CVE-2019-10140

Description

A vulnerability was found in Linux kernel's, versions up to 3.10, implementation of overlayfs. An attacker with local access can create a denial of service situation via NULL pointer dereference in ovl_posix_acl_create function in fs/overlayfs/dir.c. This can allow attackers with ability to create directories on overlayfs to crash the kernel creating a denial of service (DOS).

AI Insight

LLM-synthesized narrative grounded in this CVE's description and references.

Affected products

4
  • Linux/Kernel2 versions
    cpe:2.3:o:linux:linux_kernel:*:*:*:*:*:*:*:*+ 1 more
    • cpe:2.3:o:linux:linux_kernel:*:*:*:*:*:*:*:*range: <=3.10
    • (no CPE)range: <3.10
  • cpe:2.3:o:redhat:enterprise_linux:7.0:*:*:*:*:*:*:*
  • OpenSource/kernel:v5
    Range: up to kernel-3.10

Patches

Vulnerability mechanics

References

2

News mentions

0

No linked articles in our index yet.