CVE-2019-19076

A memory leak in the nfp_abm_u32_knode_replace() function in drivers/net/ethernet/netronome/nfp/abm/cls.c in the Linux kernel before 5.3.6 allows attackers to cause a denial of service (memory consumption), aka CID-78beef629fd9. NOTE: This has been argued as not a valid vulnerability. The upstream commit 78beef629fd9 was reverted
Configurations

Configuration 1 (hide)

cpe:2.3:o:linux:linux_kernel:*:*:*:*:*:*:*:*

Configuration 2 (hide)

OR cpe:2.3:o:canonical:ubuntu_linux:18.04:*:*:*:lts:*:*:*
cpe:2.3:o:canonical:ubuntu_linux:19.04:*:*:*:*:*:*:*
cpe:2.3:o:redhat:enterprise_linux:8.0:*:*:*:*:*:*:*

History

21 Nov 2024, 04:34

Type Values Removed Values Added
References () https://cdn.kernel.org/pub/linux/kernel/v5.x/ChangeLog-5.3.6 - Release Notes, Vendor Advisory () https://cdn.kernel.org/pub/linux/kernel/v5.x/ChangeLog-5.3.6 - Release Notes, Vendor Advisory
References () https://git.kernel.org/linus/1d1997db870f4058676439ef7014390ba9e24eb2 - Patch, Vendor Advisory () https://git.kernel.org/linus/1d1997db870f4058676439ef7014390ba9e24eb2 - Patch, Vendor Advisory
References () https://github.com/torvalds/linux/commit/78beef629fd95be4ed853b2d37b832f766bd96ca - Patch, Third Party Advisory () https://github.com/torvalds/linux/commit/78beef629fd95be4ed853b2d37b832f766bd96ca - Patch, Third Party Advisory
References () https://lore.kernel.org/lkml/20191204103955.63c4d9af%40cakuba.netronome.com/ - () https://lore.kernel.org/lkml/20191204103955.63c4d9af%40cakuba.netronome.com/ -
References () https://security.netapp.com/advisory/ntap-20191205-0001/ - Third Party Advisory () https://security.netapp.com/advisory/ntap-20191205-0001/ - Third Party Advisory
References () https://usn.ubuntu.com/4209-1/ - Third Party Advisory () https://usn.ubuntu.com/4209-1/ - Third Party Advisory

07 Nov 2023, 03:07

Type Values Removed Values Added
Summary ** DISPUTED ** A memory leak in the nfp_abm_u32_knode_replace() function in drivers/net/ethernet/netronome/nfp/abm/cls.c in the Linux kernel before 5.3.6 allows attackers to cause a denial of service (memory consumption), aka CID-78beef629fd9. NOTE: This has been argued as not a valid vulnerability. The upstream commit 78beef629fd9 was reverted. A memory leak in the nfp_abm_u32_knode_replace() function in drivers/net/ethernet/netronome/nfp/abm/cls.c in the Linux kernel before 5.3.6 allows attackers to cause a denial of service (memory consumption), aka CID-78beef629fd9. NOTE: This has been argued as not a valid vulnerability. The upstream commit 78beef629fd9 was reverted
References
  • {'url': 'https://lore.kernel.org/lkml/20191204103955.63c4d9af@cakuba.netronome.com/', 'name': 'https://lore.kernel.org/lkml/20191204103955.63c4d9af@cakuba.netronome.com/', 'tags': ['Patch', 'Vendor Advisory'], 'refsource': 'MISC'}
  • () https://lore.kernel.org/lkml/20191204103955.63c4d9af%40cakuba.netronome.com/ -

Information

Published : 2019-11-18 06:15

Updated : 2024-11-21 04:34


NVD link : CVE-2019-19076

Mitre link : CVE-2019-19076

CVE.ORG link : CVE-2019-19076


JSON object : View

Products Affected

redhat

  • enterprise_linux

linux

  • linux_kernel

canonical

  • ubuntu_linux
CWE
CWE-401

Missing Release of Memory after Effective Lifetime