CVE-2019-19079 PUBLISHED

A memory leak in the qrtr_tun_write_iter() function in net/qrtr/tun.c in the Linux kernel before 5.3 allows attackers to cause a denial of service (memory consumption), aka CID-a21b7f0cff19.

EPSS 1.27% · 79.4th percentile

Risk Scores

EPSS Score
1.27%
79.4th percentile

Affected Products

VendorProductVersions
Ubuntu:18.04:LTSlinux-oem-osp15.0.0-1022.24, 5.0.0-1024.27, 5.0.0-1025.28
Ubuntu:16.04:LTSlinux-hwe-edge4.10.0-22.24~16.04.1, 4.10.0-24.28~16.04.1, 4.10.0-26.30~16.04.1
Ubuntu:18.04:LTSlinux-azure4.15.0-1003.3, 0, 4.15.0-1002.2
Ubuntu:18.04:LTSlinux-gcp-edge5.0.0-1011.11~18.04.1, 4.18.0-1015.16~18.04.1, 4.18.0-1013.14~18.04.1
Ubuntu:Pro:14.04:LTSlinux-lts-xenial4.4.0-154.181~14.04.1, 4.4.0-151.178~14.04.1, 4.4.0-150.176~14.04.1
Ubuntu:18.04:LTSlinux-hwe5.0.0-37.40~18.04.1, 5.0.0-36.39~18.04.1, 5.0.0-35.38~18.04.1
Ubuntu:Pro:14.04:LTSlinux3.13.0-201.252, 0, 3.11.0-12.19
Ubuntu:18.04:LTSlinux-azure-edge5.0.0-1012.12~18.04.2, 4.18.0-1008.8~18.04.1, 4.18.0-1007.7~18.04.1
Ubuntu:18.04:LTSlinux-hwe-edge5.0.0-20.21~18.04.1, 5.0.0-19.20~18.04.1, 5.0.0-17.18~18.04.1
Ubuntu:Pro:14.04:LTSlinux-azure4.15.0-1180.195~14.04.1, 4.15.0-1179.194~14.04.1, 4.15.0-1178.193~14.04.1
Ubuntu:18.04:LTSlinux-gke-5.05.0.0-1022.22~18.04.3, 0, 5.0.0-1011.11~18.04.1
Ubuntu:18.04:LTSlinux-gcp4.15.0-1009.9, 4.15.0-1014.14, 4.15.0-1015.15
Ubuntu:18.04:LTSlinux-aws-5.00, 5.0.0-1021.24~18.04.1, 5.0.0-1022.25~18.04.1
Ubuntu:Pro:14.04:LTSlinux-aws4.4.0-1076.80, 4.4.0-1075.79, 4.4.0-1074.78
Ubuntu:18.04:LTSlinux-oracle-5.00, 5.0.0-1007.12~18.04.1, 5.0.0-1008.13~18.04.1

Timeline

References

Open in Interactive Console →