CVE-2019-19072 PUBLISHED

A memory leak in the predicate_parse() function in kernel/trace/trace_events_filter.c in the Linux kernel through 5.3.11 allows attackers to cause a denial of service (memory consumption), aka CID-96c5c6e6a5b6.

EPSS 0.10% · 27.7th percentile

Risk Scores

EPSS Score
0.10%
27.7th percentile

Affected Products

VendorProductVersions
Ubuntu:22.04:LTSlinux-realtime0, 5.15.0-1032.35
Ubuntu:18.04:LTSlinux-azure-edge0, 4.18.0-1008.8~18.04.1, 4.18.0-1006.6~18.04.1
Ubuntu:20.04:LTSlinux-riscv5.4.0-37.42, 5.4.0-39.44, 5.4.0-40.45
Ubuntu:22.04:LTSlinux-riscv5.15.0-1008.8, 5.15.0-1007.7, 5.15.0-1006.6
Ubuntu:18.04:LTSlinux-hwe5.0.0-23.24~18.04.1, 5.0.0-37.40~18.04.1, 5.0.0-36.39~18.04.1
Ubuntu:18.04:LTSlinux-gke-5.05.0.0-1023.23~18.04.2, 5.0.0-1025.26~18.04.1, 5.0.0-1020.20~18.04.1
Ubuntu:16.04:LTSlinux-hwe-edge4.8.0-34.36~16.04.1, 4.8.0-30.32~16.04.1, 0
Ubuntu:18.04:LTSlinux-gcp-5.35.3.0-1008.9~18.04.1, 5.3.0-1009.10~18.04.1, 0
Ubuntu:18.04:LTSlinux-hwe-edge5.0.0-15.16~18.04.1, 5.3.0-24.26~18.04.2, 5.3.0-23.25~18.04.2
Ubuntu:20.04:LTSlinux-azure-fde5.4.0-1091.96+cvm1.1, 5.4.0-1073.76+cvm1.1, 5.4.0-1074.77+cvm1.1
Ubuntu:18.04:LTSlinux-oem-osp15.0.0-1015.16, 5.0.0-1018.20, 5.0.0-1020.22
Ubuntu:24.04:LTSlinux-raspi-realtime0, 6.8.0-2019.20
Ubuntu:22.04:LTSlinux-intel-iot-realtime0, 5.15.0-1073.75
Ubuntu:20.04:LTSlinux-raspi25.4.0-1006.6, 5.3.0-1017.19, 5.4.0-1004.4
Ubuntu:20.04:LTSlinux-gkeop-5.155.15.0-1051.58~20.04.1, 0, 5.15.0-1003.5~20.04.2
Ubuntu:18.04:LTSlinux-azure-5.35.3.0-1008.9~18.04.1, 5.3.0-1007.8~18.04.1, 0
Ubuntu:18.04:LTSlinux-gcp4.15.0-1015.15, 4.15.0-1017.18, 4.15.0-1018.19
Ubuntu:18.04:LTSlinux-gcp-edge4.18.0-1015.16~18.04.1, 4.18.0-1013.14~18.04.1, 4.18.0-1012.13~18.04.1
Ubuntu:20.04:LTSlinux-gke5.4.0-1105.112, 5.4.0-1033.35, 5.4.0-1035.37
Ubuntu:18.04:LTSlinux-azure4.15.0-1002.2, 5.0.0-1014.14~18.04.1, 4.18.0-1025.27~18.04.1

…and 3 more

Timeline

References

Open in Interactive Console →