CVE-2019-19057: Low severity Linux Linux kernel vulnerability
Last updated 14 August 2026
Other sources
Two memory leak flaws were found in the Linux kernel's mwifiexpcieinitevtring() function. A local attacker, able to reload the kernel module or hotplug Marvell WiFi hardware using this driver, can cause a denial of service (memory consumption) by triggering mwifiexmappcimemory() failures.
Two memory leaks in the mwifiexpcieinitevtring() function in drivers/net/wireless/marvell/mwifiex/pcie.c in the Linux kernel through 5.3.11 allow attackers to cause a denial of service (memory consumption) by triggering mwifiexmappcimemory() failures, aka CID-d10dcb615c8e.
Two memory leaks in the mwifiexpcieinitevtring() function in drivers/net/wireless/marvell/mwifiex/pcie.c in the Linux kernel through 5.3.11 allow attackers to cause a denial of service (memory consumption) by triggering mwifiexmappcimemory() failures.
Upstream Issue:
https://github.com/torvalds/linux/commit/d10dcb615c8e29d403a24d35f8310a7a53e3050c
— Red Hat
Affected Software
Remediation
Recommended actions to resolve this vulnerability, in priority order.
- Upgrade
Upgrade
redhat/kernel-rtto a version that resolves this vulnerability.Fixed in 0:4.18.0-193.rt13.51.el8 - Upgrade
Upgrade
redhat/kernelto a version that resolves this vulnerability.Fixed in 0:4.18.0-193.el8 - Upgrade
Upgrade
debian/linuxto a version that resolves this vulnerability.Fixed in 5.10.223-1Fixed in 5.10.262-1Fixed in 6.1.176-1Fixed in 6.1.180-1Fixed in 6.12.94-1Fixed in 6.12.101-1Fixed in 7.1.7-1Fixed in 7.1.8-1 - Upgrade
Upgrade
Linux kernel (drivers/net/wireless/marvell/mwifiex/pcie.c)to a version that resolves this vulnerability.Patch CID-d10dcb615c8e
Event History
Parent advisories
This vulnerability appears in the following advisories.
Frequently Asked Questions
What is the severity of CVE-2019-19057?
CVE-2019-19057 is classified as a medium-severity vulnerability due to its potential to cause denial of service through memory consumption.
How do I fix CVE-2019-19057?
To fix CVE-2019-19057, update your Linux kernel to version 0:4.18.0-193.rt13.51.el8, 0:4.18.0-193.el8, or apply any other available patches from your distribution.
Who is affected by CVE-2019-19057?
CVE-2019-19057 affects systems running certain versions of the Linux kernel, specifically those that utilize the mwifiex_pcie driver.
What type of vulnerability is CVE-2019-19057?
CVE-2019-19057 is a memory leak vulnerability that can be exploited by local attackers to deplete system memory resources.
What systems should be prioritized for the CVE-2019-19057 update?
Systems running affected versions of the Linux kernel, particularly those using Marvell WiFi hardware, should be prioritized for updates.