Improper Initialization The advisory has been revoked - it doesn't affect any version of package kfreebsd-10  (opens in a new tab)


Threat Intelligence

EPSS
0.04% (16th percentile)

Do your applications use this vulnerable package?

In a few clicks we can analyze your entire application and see what components are vulnerable in your application, and suggest you quick fixes.

Test your applications
  • Snyk IDSNYK-DEBIAN11-KFREEBSD10-551739
  • published20 Feb 2020
  • disclosed18 Feb 2020

Introduced: 18 Feb 2020

CVE-2019-15875  (opens in a new tab)
CWE-665  (opens in a new tab)

Amendment

The Debian security team deemed this advisory irrelevant for Debian:11.

NVD Description

Note: Versions mentioned in the description apply only to the upstream kfreebsd-10 package and not the kfreebsd-10 package as distributed by Debian.

In FreeBSD 12.1-STABLE before r354734, 12.1-RELEASE before 12.1-RELEASE-p2, 12.0-RELEASE before 12.0-RELEASE-p13, 11.3-STABLE before r354735, and 11.3-RELEASE before 11.3-RELEASE-p6, due to incorrect initialization of a stack data structure, core dump files may contain up to 20 bytes of kernel data previously stored on the stack.