CVE-2019-19054Medium· 4.7▾ SunlitA memory leak in the cx23888_ir_probe() function in drivers/media/pci/cx23885/cx23888-ir.c in the Linux kernel through 5.3.11 allows attackers to cause a denial of service (memory consumption) by triggering kfifo_alloc() failures, aka CI…
▾ Sunlit zone — Low / medium · no exploitation signal
impact 25.9 · likelihood 0.1 · exploitation 0
Need a working PoC? Pro members can cast a request and our team develops one — it lands right here.
Disclosure to exploitation, from the record and what we observed since indexing it.
Disclosed via NVD
Last analysed / modified upstream
0.4%
A memory leak in the cx23888_ir_probe() function in drivers/media/pci/cx23885/cx23888-ir.c in the Linux kernel through 5.3.11 allows attackers to cause a denial of service (memory consumption) by triggering kfifo_alloc() failures, aka CID-a7b2df76b42b.
linux_kernel <= 5.3.11ubuntu_linux = 14.04ubuntu_linux = 16.04ubuntu_linux = 18.04ubuntu_linux = 20.04fedora = 30fedora = 31leap = 15.1active_iq_unified_manageraff_baseboard_management_controllercloud_backupdata_availability_servicese-series_santricity_os_controller = 11.0e-series_santricity_os_controller = 11.0.0e-series_santricity_os_controller = 11.20e-series_santricity_os_controller = 11.25e-series_santricity_os_controller = 11.30e-series_santricity_os_controller = 11.30.5r3e-series_santricity_os_controller = 11.40e-series_santricity_os_controller = 11.40.3r2e-series_santricity_os_controller = 11.40.5e-series_santricity_os_controller = 11.50.1e-series_santricity_os_controller = 11.50.2e-series_santricity_os_controller = 11.60e-series_santricity_os_controller = 11.60.0e-series_santricity_os_controller = 11.60.1e-series_santricity_os_controller = 11.60.3e-series_santricity_os_controller = 11.70.1e-series_santricity_os_controller = 11.70.2fas/aff_baseboard_management_controllerhci_baseboard_management_controller = h610ssolidfire,_enterprise_sds_&_hci_storage_nodesolidfire_&_hci_management_nodesteelstore_cloud_integrated_storagebrocade_fabric_operating_system_firmwarehci_compute_node_firmwaresolidfire_baseboard_management_controller_firmwareRefer to the linked advisories for vendor-supplied fixes and affected version ranges.
Connected by shared product, vendor, weakness, or advisory.
CVE-2019-20095Medium· 5.5mwifiex_tm_cmd in drivers/net/wireless/marvell/mwifiex/cfg80211.c in the Linux kernel before 5.1.6 has some error-handling cases that did not free allocated hostcmd memory, aka CID-003b686ace82
CVE-2019-19965Medium· 4.7In the Linux kernel through 5.4.6, there is a NULL pointer dereference in drivers/scsi/libsas/sas_discover.c because of mishandling of port disconnection during discovery, related to a PHY down race condition, aka CID-f70267f379b5.
CVE-2019-19066Medium· 4.7A memory leak in the bfad_im_get_stats() function in drivers/scsi/bfa/bfad_attr.c in the Linux kernel through 5.3.11 allows attackers to cause a denial of service (memory consumption) by triggering bfa_port_get_stats() failures, aka CID-…
CVE-2019-19083Medium· 4.7Memory leaks in *clock_source_create() functions under drivers/gpu/drm/amd/display/dc in the Linux kernel before 5.3.8 allow attackers to cause a denial of service (memory consumption)
CVE-2019-19080Medium· 5.9Four memory leaks in the nfp_flower_spawn_phy_reprs() function in drivers/net/ethernet/netronome/nfp/flower/main.c in the Linux kernel before 5.3.4 allow attackers to cause a denial of service (memory consumption), aka CID-8572cea1461a.
CVE-2019-19081Medium· 5.9A memory leak in the nfp_flower_spawn_vnic_reprs() function in drivers/net/ethernet/netronome/nfp/flower/main.c in the Linux kernel before 5.3.4 allows attackers to cause a denial of service (memory consumption), aka CID-8ce39eb5a67a.