VDB

CVE-2019-19082

CVE-2019-19082 PUBLISHED

Memory leaks in *create_resource_pool() functions under drivers/gpu/drm/amd/display/dc in the Linux kernel through 5.3.11 allow attackers to cause a denial of service (memory consumption). This affects the dce120_create_resource_pool() function in drivers/gpu/drm/amd/display/dc/dce120/dce120_resource.c, the dce110_create_resource_pool() function in drivers/gpu/drm/amd/display/dc/dce110/dce110_resource.c, the dce100_create_resource_pool() function in drivers/gpu/drm/amd/display/dc/dce100/dce100_resource.c, the dcn10_create_resource_pool() function in drivers/gpu/drm/amd/display/dc/dcn10/dcn10_resource.c, and the dce112_create_resource_pool() function in drivers/gpu/drm/amd/display/dc/dce112/dce112_resource.c, aka CID-104c307147ad.

EPSS 0.10% · 26.5th percentile

Risk Scores

EPSS Score
0.10%
26.5th percentile

Affected Products

VendorProductVersions
Ubuntu:18.04:LTSlinux-oem4.15.0-1065.75, 0, 4.15.0-1002.3
Ubuntu:18.04:LTSlinux-kvm4.15.0-1031.31, 4.15.0-1032.32, 4.15.0-1003.3
Ubuntu:18.04:LTSlinux4.13.0-16.19, 4.13.0-25.29, 4.13.0-32.35
Ubuntu:18.04:LTSlinux-gke-5.0*, *, *
Ubuntu:22.04:LTSlinux-riscv5.13.0-1004.4, 0, 5.15.0-1015.17
Ubuntu:24.04:LTSlinux-raspi-realtime6.8.0-2019.20, 0
Ubuntu:18.04:LTSlinux-aws-5.05.0.0-1022.25~18.04.1, 5.0.0-1023.26~18.04.1, 0
Ubuntu:18.04:LTSlinux-oem-osp10, 5.0.0-1012.13, 5.0.0-1018.20
Ubuntu:20.04:LTSlinux-gke5.4.0-1043.45, 5.4.0-1068.71, 5.4.0-1067.70
Ubuntu:18.04:LTSlinux-raspi24.15.0-1034.36, 4.15.0-1036.38, 4.15.0-1037.39
Ubuntu:18.04:LTSlinux-oracle-5.0*, 0, 5.0.0-1007.12~18.04.1
Ubuntu:18.04:LTSlinux-azure-5.35.3.0-1009.10~18.04.1, 5.3.0-1008.9~18.04.1, 0
Ubuntu:Pro:FIPS-updates:18.04:LTSlinux-aws-fips4.15.0-2000.4, 0
Ubuntu:18.04:LTSlinux-hwe-edge*, 5.3.0-22.24~18.04.1, 5.3.0-19.20~18.04.2
Ubuntu:Pro:FIPS:18.04:LTSlinux-azure-fips0, 4.15.0-1002.2
Ubuntu:16.04:LTSlinux-oracle*, 4.15.0-1008.10~16.04.1, 4.15.0-1010.12~16.04.1
Ubuntu:16.04:LTSlinux-azure4.15.0-1046.50, 4.15.0-1039.43, 4.13.0-1007.9
Ubuntu:Pro:FIPS:18.04:LTSlinux-aws-fips0, 4.15.0-2000.4
Ubuntu:18.04:LTSlinux-azure5.0.0-1020.21~18.04.1, 5.0.0-1022.23~18.04.1, 5.0.0-1023.24~18.04.1
Ubuntu:Pro:14.04:LTSlinux-azure4.15.0-1035.36~14.04.2, 4.15.0-1037.39~14.04.2, 4.15.0-1039.41~14.04.2

…and 21 more

Timeline

  • Nov 17, 2019 CVE Published
  • Apr 14, 2021 EPSS Score
  • Jun 23, 2021 EPSS Score
  • Aug 24, 2021 EPSS Score
  • Oct 26, 2021 EPSS Score
  • Jan 6, 2022 EPSS Score
  • Feb 4, 2022 EPSS Score
  • Feb 28, 2022 EPSS Score
  • Apr 1, 2022 EPSS Score
  • May 1, 2022 EPSS Score
  • Jul 3, 2022 EPSS Score
  • Sep 4, 2022 EPSS Score
Open in Interactive Console →
$ Console Community · 100/wk Open console ›