Wind River Support Network

HomeDefectsLIN1019-3386
Fixed

LIN1019-3386 : Security Advisory - linux - CVE-2019-18807

Created: Nov 7, 2019    Updated: Apr 22, 2022
Resolved Date: Nov 26, 2019
Found In Version: 10.19.45.1
Fix Version: 10.19.45.2
Severity: Standard
Applicable for: Wind River Linux LTS 19
Component/s: Kernel

Description

Two memory leaks in the sja1105_static_config_upload() function in drivers/net/dsa/sja1105/sja1105_spi.c in the Linux kernel before 5.3.5 allow attackers to cause a denial of service (memory consumption) by triggering static_config_buf_prepare_for_upload() or sja1105_inhibit_tx() failures, aka CID-68501df92d11.

CREATE(Triage):(User=admin) CVE-2019-18807 (https://nvd.nist.gov/vuln/detail/CVE-2019-18807)

CVEs


Live chat
Online