First published: Mon Nov 18 2019(Updated: )
A memory leak in the rpmsg_eptdev_write_iter() function in drivers/rpmsg/rpmsg_char.c in the Linux kernel through 5.3.11 allows attackers to cause a denial of service (memory consumption) by triggering copy_from_iter_full() failures, aka CID-bbe692e349e2.
Credit: cve@mitre.org cve@mitre.org
Affected Software | Affected Version | How to fix |
---|---|---|
ubuntu/linux | <5.3.0-42.34 | 5.3.0-42.34 |
ubuntu/linux | <5.5~ | 5.5~ |
ubuntu/linux-aws | <5.3.0-1013.14 | 5.3.0-1013.14 |
ubuntu/linux-aws | <5.5~ | 5.5~ |
ubuntu/linux-aws-5.0 | <5.0.0-1027.30 | 5.0.0-1027.30 |
ubuntu/linux-aws-5.0 | <5.5~ | 5.5~ |
ubuntu/linux-aws-hwe | <5.5~ | 5.5~ |
ubuntu/linux-azure | <5.0.0-1035.37 | 5.0.0-1035.37 |
ubuntu/linux-azure | <5.3.0-1016.17 | 5.3.0-1016.17 |
ubuntu/linux-azure | <5.5~ | 5.5~ |
ubuntu/linux-azure-5.3 | <5.3.0-1016.17~18.04.1 | 5.3.0-1016.17~18.04.1 |
ubuntu/linux-azure-5.3 | <5.5~ | 5.5~ |
ubuntu/linux-azure-edge | <5.5~ | 5.5~ |
ubuntu/linux-gcp | <5.0.0-1033.34 | 5.0.0-1033.34 |
ubuntu/linux-gcp | <5.3.0-1014.15 | 5.3.0-1014.15 |
ubuntu/linux-gcp | <5.5~ | 5.5~ |
ubuntu/linux-gcp-5.3 | <5.3.0-1014.15~18.04.1 | 5.3.0-1014.15~18.04.1 |
ubuntu/linux-gcp-5.3 | <5.5~ | 5.5~ |
ubuntu/linux-gcp-edge | <5.5~ | 5.5~ |
ubuntu/linux-gke-4.15 | <5.5~ | 5.5~ |
ubuntu/linux-gke-5.0 | <5.0.0-1032.33 | 5.0.0-1032.33 |
ubuntu/linux-gke-5.0 | <5.5~ | 5.5~ |
ubuntu/linux-gke-5.3 | <5.3.0-1014.15~18.04.1 | 5.3.0-1014.15~18.04.1 |
ubuntu/linux-gke-5.3 | <5.5~ | 5.5~ |
ubuntu/linux-hwe | <5.3.0-42.34~18.04.1 | 5.3.0-42.34~18.04.1 |
ubuntu/linux-hwe | <5.5~ | 5.5~ |
ubuntu/linux-hwe-edge | <5.5~ | 5.5~ |
ubuntu/linux-kvm | <5.3.0-1012.13 | 5.3.0-1012.13 |
ubuntu/linux-kvm | <5.5~ | 5.5~ |
ubuntu/linux-lts-trusty | <5.5~ | 5.5~ |
ubuntu/linux-lts-xenial | <5.5~ | 5.5~ |
ubuntu/linux-oem | <5.5~ | 5.5~ |
ubuntu/linux-oem-5.6 | <5.5~ | 5.5~ |
ubuntu/linux-oem-osp1 | <5.0.0-1043.48 | 5.0.0-1043.48 |
ubuntu/linux-oem-osp1 | <5.0.0-1043.48 | 5.0.0-1043.48 |
ubuntu/linux-oem-osp1 | <5.5~ | 5.5~ |
ubuntu/linux-oracle | <5.3.0-1011.12 | 5.3.0-1011.12 |
ubuntu/linux-oracle | <5.5~ | 5.5~ |
ubuntu/linux-oracle-5.0 | <5.0.0-1013.18 | 5.0.0-1013.18 |
ubuntu/linux-oracle-5.0 | <5.5~ | 5.5~ |
ubuntu/linux-oracle-5.3 | <5.5~ | 5.5~ |
ubuntu/linux-raspi2 | <5.3.0-1019.21 | 5.3.0-1019.21 |
ubuntu/linux-raspi2 | <5.5~ | 5.5~ |
ubuntu/linux-raspi2-5.3 | <5.3.0-1019.21~18.04.1 | 5.3.0-1019.21~18.04.1 |
ubuntu/linux-raspi2-5.3 | <5.5~ | 5.5~ |
ubuntu/linux-snapdragon | <5.5~ | 5.5~ |
Linux Linux kernel | >=4.20<5.4.12 | |
Canonical Ubuntu Linux | =18.04 | |
Canonical Ubuntu Linux | =19.10 | |
Netapp Active Iq Unified Manager Vmware Vsphere | ||
Netapp Aff Baseboard Management Controller | ||
Netapp Cloud Backup | ||
Netapp Data Availability Services | ||
NetApp E-Series SANtricity OS Controller | =11.0 | |
NetApp E-Series SANtricity OS Controller | =11.0.0 | |
NetApp E-Series SANtricity OS Controller | =11.20 | |
NetApp E-Series SANtricity OS Controller | =11.25 | |
NetApp E-Series SANtricity OS Controller | =11.30 | |
NetApp E-Series SANtricity OS Controller | =11.30.5r3 | |
NetApp E-Series SANtricity OS Controller | =11.40 | |
NetApp E-Series SANtricity OS Controller | =11.40.3r2 | |
NetApp E-Series SANtricity OS Controller | =11.40.5 | |
NetApp E-Series SANtricity OS Controller | =11.50.1 | |
NetApp E-Series SANtricity OS Controller | =11.50.2 | |
NetApp E-Series SANtricity OS Controller | =11.50.2-p1 | |
NetApp E-Series SANtricity OS Controller | =11.60 | |
NetApp E-Series SANtricity OS Controller | =11.60.0 | |
NetApp E-Series SANtricity OS Controller | =11.60.1 | |
NetApp E-Series SANtricity OS Controller | =11.60.3 | |
NetApp E-Series SANtricity OS Controller | =11.70.1 | |
NetApp E-Series SANtricity OS Controller | =11.70.2 | |
Netapp Fas\/aff Baseboard Management Controller | ||
Netapp Hci Baseboard Management Controller | =h610s | |
Netapp Solidfire\, Enterprise Sds \& Hci Storage Node | ||
Netapp Solidfire \& Hci Management Node | ||
Netapp Steelstore Cloud Integrated Storage | ||
Broadcom Brocade Fabric Operating System Firmware | ||
Netapp Solidfire Baseboard Management Controller Firmware | ||
Netapp Solidfire Baseboard Management Controller | ||
Netapp Hci Compute Node Firmware | ||
Netapp Hci Compute Node | ||
All of | ||
Netapp Solidfire Baseboard Management Controller Firmware | ||
Netapp Solidfire Baseboard Management Controller | ||
All of | ||
Netapp Hci Compute Node Firmware | ||
Netapp Hci Compute Node | ||
debian/linux | 4.19.249-2 4.19.304-1 5.10.209-2 5.10.216-1 6.1.76-1 6.1.90-1 6.7.12-1 6.8.9-1 |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
The vulnerability ID for this memory leak vulnerability is CVE-2019-19053.
The severity of CVE-2019-19053 is medium.
CVE-2019-19053 allows attackers to cause a denial of service (memory consumption) in the Linux kernel.
The affected software for CVE-2019-19053 includes various versions of the Linux kernel.
To fix CVE-2019-19053, apply the recommended updates provided by the software vendor.