CVE-2019-19044
18.11.2019, 06:15
Two memory leaks in the v3d_submit_cl_ioctl() function in drivers/gpu/drm/v3d/v3d_gem.c in the Linux kernel before 5.3.11 allow attackers to cause a denial of service (memory consumption) by triggering kcalloc() or v3d_job_init() failures, aka CID-29cd13cfd762.Enginsight
| Vendor | Product | Version |
|---|---|---|
| linux | linux_kernel | 5.3 ≤ 𝑥 < 5.3.11 |
| netapp | active_iq_unified_manager | - |
| netapp | aff_baseboard_management_controller | - |
| netapp | cloud_backup | - |
| netapp | data_availability_services | - |
| netapp | e-series_santricity_os_controller | 11.0 |
| netapp | e-series_santricity_os_controller | 11.0.0 |
| netapp | e-series_santricity_os_controller | 11.20 |
| netapp | e-series_santricity_os_controller | 11.25 |
| netapp | e-series_santricity_os_controller | 11.30 |
| netapp | e-series_santricity_os_controller | 11.30.5r3:r3 |
| netapp | e-series_santricity_os_controller | 11.40 |
| netapp | e-series_santricity_os_controller | 11.40.3r2:r2 |
| netapp | e-series_santricity_os_controller | 11.40.5 |
| netapp | e-series_santricity_os_controller | 11.50.1 |
| netapp | e-series_santricity_os_controller | 11.50.2 |
| netapp | e-series_santricity_os_controller | 11.50.2:p1 |
| netapp | e-series_santricity_os_controller | 11.60 |
| netapp | e-series_santricity_os_controller | 11.60.0 |
| netapp | e-series_santricity_os_controller | 11.60.1 |
| netapp | e-series_santricity_os_controller | 11.60.3 |
| netapp | e-series_santricity_os_controller | 11.70.1 |
| netapp | e-series_santricity_os_controller | 11.70.2 |
| netapp | fas\/aff_baseboard_management_controller | - |
| netapp | solidfire\,_enterprise_sds_\&_hci_storage_node | - |
| netapp | solidfire_\&_hci_management_node | - |
| netapp | steelstore_cloud_integrated_storage | - |
| broadcom | brocade_fabric_operating_system_firmware | - |
| netapp | hci_compute_node_firmware | - |
| netapp | solidfire_baseboard_management_controller_firmware | - |
| canonical | ubuntu_linux | 18.04 |
| canonical | ubuntu_linux | 19.10 |
𝑥
= Vulnerable software versions
Debian Releases
Ubuntu Releases
Ubuntu Product | |||||||||||
|---|---|---|---|---|---|---|---|---|---|---|---|
| linux |
| ||||||||||
| linux-aws |
| ||||||||||
| linux-aws-5.0 |
| ||||||||||
| linux-aws-hwe |
| ||||||||||
| linux-azure |
| ||||||||||
| linux-azure-5.3 |
| ||||||||||
| linux-azure-edge |
| ||||||||||
| linux-gcp |
| ||||||||||
| linux-gcp-5.3 |
| ||||||||||
| linux-gcp-edge |
| ||||||||||
| linux-gke-4.15 |
| ||||||||||
| linux-gke-5.0 |
| ||||||||||
| linux-gke-5.3 |
| ||||||||||
| linux-hwe |
| ||||||||||
| linux-hwe-edge |
| ||||||||||
| linux-kvm |
| ||||||||||
| linux-lts-trusty |
| ||||||||||
| linux-lts-xenial |
| ||||||||||
| linux-oem |
| ||||||||||
| linux-oem-5.4 |
| ||||||||||
| linux-oem-osp1 |
| ||||||||||
| linux-oracle |
| ||||||||||
| linux-oracle-5.0 |
| ||||||||||
| linux-raspi2 |
| ||||||||||
| linux-raspi2-5.3 |
| ||||||||||
| linux-snapdragon |
|
Common Weakness Enumeration
References