CVE-2019-19075: High severity Linux Linux kernel vulnerability
A memory leak in the ca8210probe() function in drivers/net/ieee802154/ca8210.c in the Linux kernel before 5.3.8 allows attackers to cause a denial of service (memory consumption) by triggering ca8210getplatformdata() failures, aka CID-6402939ec86e.
Affected Software
Remediation
Recommended actions to resolve this vulnerability, in priority order.
- Upgrade
Upgrade
debian/linuxto a version that resolves this vulnerability.Fixed in 6.1.176-1Fixed in 6.1.187-1Fixed in 6.12.107-1Fixed in 7.1.13-1 - Upgrade
Upgrade
linux kernelto a version that resolves this vulnerability.Fixed in 5.3.8Patch CID-6402939ec86e
Event History
Frequently Asked Questions
What is the severity of CVE-2019-19075?
CVE-2019-19075 has a high severity due to its potential to cause a denial of service through memory leaks.
How do I fix CVE-2019-19075?
To resolve CVE-2019-19075, upgrade the Linux kernel to version 5.3.8 or later.
What software is affected by CVE-2019-19075?
CVE-2019-19075 affects various versions of the Linux kernel prior to 5.3.8, as well as specific Ubuntu releases.
What is the impact of CVE-2019-19075?
The impact of CVE-2019-19075 includes potential system instability and denial of service due to memory consumption.
How was CVE-2019-19075 discovered?
CVE-2019-19075 was identified in the ca8210_probe() function within the Linux kernel, leading to memory leaks.