CVE-2019-19079

Description

A memory leak in the qrtr_tun_write_iter() function in net/qrtr/tun.c in the Linux kernel before 5.3 allows attackers to cause a denial of service (memory consumption), aka CID-a21b7f0cff19.

Risk Information

Base Score
7.5
MODERATE
Vector
CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:H
EPSS Score
Exploitation Probability
1.267

Associated Vulnerability

VulnerabilityOS Platform
Linux kernel for Amazon Web Services (AWS) systems (USN-4258-1) linux-image-gcp_5.0.0.1029.33_amd64.debLinux
Linux kernel for Amazon Web Services (AWS) systems (USN-4258-1) linux-image-gke-5.0_5.0.0.1029.17_amd64.debLinux
Linux kernel for Amazon Web Services (AWS) systems (USN-4258-1) linux-image-aws-edge_5.0.0.1024.38_amd64.debLinux
Linux kernel for Amazon Web Services (AWS) systems (USN-4258-1) linux-image-oracle-edge_5.0.0.1010.9_amd64.debLinux
Linux kernel for Amazon Web Services (AWS) systems (USN-4258-1) linux-image-5.0.0-1024-aws_5.0.0-1024.27~18.04.1_amd64.debLinux
Linux kernel for Amazon Web Services (AWS) systems (USN-4258-1) linux-image-5.0.0-1029-gcp_5.0.0-1029.30~18.04.1_amd64.debLinux
Linux kernel for Amazon Web Services (AWS) systems (USN-4258-1) linux-image-5.0.0-1029-gke_5.0.0-1029.30~18.04.1_amd64.debLinux
Linux kernel for Amazon Web Services (AWS) systems (USN-4258-1) linux-image-5.0.0-1010-oracle_5.0.0-1010.15~18.04.1_amd64.debLinux

Patch Details

No records found

References

https://nvd.nist.gov/vuln/detail/CVE-2023-1234
https://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2023-1234