CVE-2019-19083: Medium severity Linux Linux kernel vulnerability
Last updated 14 August 2026
Other sources
Memory leaks in clocksourcecreate() functions under drivers/gpu/drm/amd/display/dc in the Linux kernel before 5.3.8 allow attackers to cause a denial of service (memory consumption). This affects the dce112clocksourcecreate() function in drivers/gpu/drm/amd/display/dc/dce112/dce112resource.c, the dce100clocksourcecreate() function in drivers/gpu/drm/amd/display/dc/dce100/dce100resource.c, the dcn10clocksourcecreate() function in drivers/gpu/drm/amd/display/dc/dcn10/dcn10resource.c, the dcn20clocksourcecreate() function in drivers/gpu/drm/amd/display/dc/dcn20/dcn20resource.c, the dce120clocksourcecreate() function in drivers/gpu/drm/amd/display/dc/dce120/dce120resource.c, the dce110clocksourcecreate() function in drivers/gpu/drm/amd/display/dc/dce110/dce110resource.c, and the dce80clocksourcecreate() function in drivers/gpu/drm/amd/display/dc/dce80/dce80resource.c, aka CID-055e547478a1.
— Launchpad
Affected Software
Remediation
Recommended actions to resolve this vulnerability, in priority order.
- Upgrade
Upgrade
debian/linuxto a version that resolves this vulnerability.Fixed in 5.10.223-1Fixed in 5.10.262-1Fixed in 6.1.176-1Fixed in 6.1.180-1Fixed in 6.12.94-1Fixed in 6.12.101-1Fixed in 7.1.8-1Fixed in 7.1.8-2 - Upgrade
Upgrade
Linux kernel (drivers/gpu/drm/amd/display/dc clock_source_create memory leak)to a version that resolves this vulnerability.Fixed in 5.3.8Patch CID-055e547478a1
Event History
Frequently Asked Questions
What is the severity of CVE-2019-19083?
CVE-2019-19083 has a medium severity level due to its potential to cause denial of service through memory consumption.
How do I fix CVE-2019-19083?
To fix CVE-2019-19083, upgrade the affected Linux kernel to version 5.3.8 or later.
Which versions of Linux are affected by CVE-2019-19083?
CVE-2019-19083 affects Linux kernel versions prior to 5.3.8 and specific versions of Ubuntu and openSUSE.
What is the impact of CVE-2019-19083?
The impact of CVE-2019-19083 includes potential denial of service due to memory leaks in the clock_source_create functions.
Are there specific distributions impacted by CVE-2019-19083?
Yes, CVE-2019-19083 impacts several distributions including Ubuntu 14.04, 16.04, 18.04, 19.04, and 19.10, as well as openSUSE Leap 15.1.