CVE-2019-20095Medium· 5.5▾ Sunlitmwifiex_tm_cmd in drivers/net/wireless/marvell/mwifiex/cfg80211.c in the Linux kernel before 5.1.6 has some error-handling cases that did not free allocated hostcmd memory, aka CID-003b686ace82. This will cause a memory leak and denial o…
▾ Sunlit zone — Low / medium · no exploitation signal
impact 30.3 · likelihood 0.1 · exploitation 0
Need a working PoC? Pro members can cast a request and our team develops one — it lands right here.
Disclosure to exploitation, from the record and what we observed since indexing it.
Disclosed via NVD
Last analysed / modified upstream
0.4%
mwifiex_tm_cmd in drivers/net/wireless/marvell/mwifiex/cfg80211.c in the Linux kernel before 5.1.6 has some error-handling cases that did not free allocated hostcmd memory, aka CID-003b686ace82. This will cause a memory leak and denial of service.
linux_kernel < 5.1.6leap = 15.1active_iq_unified_managercloud_backupdata_availability_servicese-series_santricity_os_controller >= 11.0.0, <= 11.70.1hci_management_nodesolidfiresteelstore_cloud_integrated_storagea700s_firmware8300_firmware8700_firmwarea400_firmwareh610s_firmwareUpgrade past the affected range:
linux_kernel 5.1.6Connected by shared product, vendor, weakness, or advisory.
CVE-2019-19965Medium· 4.7In the Linux kernel through 5.4.6, there is a NULL pointer dereference in drivers/scsi/libsas/sas_discover.c because of mishandling of port disconnection during discovery, related to a PHY down race condition, aka CID-f70267f379b5.
CVE-2019-19054Medium· 4.7A memory leak in the cx23888_ir_probe() function in drivers/media/pci/cx23885/cx23888-ir.c in the Linux kernel through 5.3.11 allows attackers to cause a denial of service (memory consumption) by triggering kfifo_alloc() failures, aka CI…
CVE-2019-19066Medium· 4.7A memory leak in the bfad_im_get_stats() function in drivers/scsi/bfa/bfad_attr.c in the Linux kernel through 5.3.11 allows attackers to cause a denial of service (memory consumption) by triggering bfa_port_get_stats() failures, aka CID-…
CVE-2020-12769Medium· 5.5An issue was discovered in the Linux kernel before 5.4.17
CVE-2019-19462Medium· 5.5relay_open in kernel/relay.c in the Linux kernel through 5.4.1 allows local users to cause a denial of service (such as relay blockage) by triggering a NULL alloc_percpu result.
CVE-2019-15218Medium· 4.6An issue was discovered in the Linux kernel before 5.1.8