Wind River Support Network

HomeDefectsLINCD-399
Fixed

LINCD-399 : Security Advisory - linux - CVE-2019-19064

Created: Nov 18, 2019    Updated: Apr 21, 2022
Resolved Date: Feb 13, 2020
Previous ID: LIN1019-3538
Found In Version: 10.20.3.0
Fix Version: 10.20.3.0
Severity: Standard
Applicable for: Wind River Linux CD
Component/s: Kernel

Description

A memory leak in the fsl_lpspi_probe() function in drivers/spi/spi-fsl-lpspi.c in the Linux kernel through 5.3.11 allows attackers to cause a denial of service (memory consumption) by triggering pm_runtime_get_sync() failures, aka CID-057b8945f78f.

CREATE(Triage):(User=admin) CVE-2019-19064 (https://nvd.nist.gov/vuln/detail/CVE-2019-19064)

CVEs


Live chat
Online