First published: Mon Nov 18 2019(Updated: )
** DISPUTED ** A memory leak in the unittest_data_add() function in drivers/of/unittest.c in the Linux kernel before 5.3.10 allows attackers to cause a denial of service (memory consumption) by triggering of_fdt_unflatten_tree() failures, aka CID-e13de8fe0d6a. NOTE: third parties dispute the relevance of this because unittest.c can only be reached during boot.
Credit: cve@mitre.org cve@mitre.org
Affected Software | Affected Version | How to fix |
---|---|---|
Linux Linux kernel | <5.3.10 | |
Linux Linux kernel | >=3.17<4.4.200 | |
Linux Linux kernel | >=4.5<4.9.200 | |
Linux Linux kernel | >=4.10<4.14.153 | |
Linux Linux kernel | >=4.15<4.19.83 | |
Linux Linux kernel | >=4.20<5.3.10 | |
openSUSE Leap | =15.1 |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.