Wind River Support Network

HomeDefectsLIN9-9278
Fixed

LIN9-9278 : Security Advisory - linux - CVE-2019-18806

Created: Nov 8, 2019    Updated: Nov 23, 2019
Resolved Date: Nov 23, 2019
Found In Version: 9.0.0.1
Fix Version: 9.0.0.24
Severity: Standard
Applicable for: Wind River Linux 9
Component/s: Kernel

Description

A memory leak in the ql_alloc_large_buffers() function in drivers/net/ethernet/qlogic/qla3xxx.c in the Linux kernel before 5.3.5 allows local users to cause a denial of service (memory consumption) by triggering pci_dma_mapping_error() failures, aka CID-1acb8f2a7a9f.

CREATE(Triage):(User=admin) [CVE-2019-18806|https://nvd.nist.gov/vuln/detail/CVE-2019-18806]

CVEs


Live chat
Online