Bug 1776367 (CVE-2019-19079)
Summary: | CVE-2019-19079 kernel: memory leak in the qrtr_tun_write_iter() function in net/qrtr/tun.c leads to DoS | ||
---|---|---|---|
Product: | [Other] Security Response | Reporter: | Guilherme de Almeida Suckevicz <gsuckevi> |
Component: | vulnerability | Assignee: | Red Hat Product Security <security-response-team> |
Status: | CLOSED NOTABUG | QA Contact: | |
Severity: | medium | Docs Contact: | |
Priority: | medium | ||
Version: | unspecified | CC: | acaringi, airlied, bdettelb, bhu, blc, brdeoliv, bskeggs, dhoward, dvlasenk, esammons, fhrbata, hdegoede, hkrzesin, iboverma, ichavero, itamar, jarodwilson, jeremy, jforbes, jglisse, jlelli, john.j5live, jonathan, josef, jross, jschorr, jshortt, jstancek, jwboyer, kernel-maint, kernel-mgr, labbott, lgoncalv, linville, masami256, matt, mchehab, mcressma, mjg59, mlangsdo, nmurray, plougher, qzhao, rt-maint, rvrbovsk, steved, williams |
Target Milestone: | --- | Keywords: | Security |
Target Release: | --- | ||
Hardware: | All | ||
OS: | Linux | ||
Whiteboard: | |||
Fixed In Version: | Doc Type: | If docs needed, set a value | |
Doc Text: |
A memory leak was discovered in the qrtr_tun_write_iter() function in net/qrtr/tun.c in the Linux kernel before version 5.3. This flaw allows attackers to cause a denial of service due to memory consumption.
|
Story Points: | --- |
Clone Of: | Environment: | ||
Last Closed: | 2019-12-13 14:09:24 UTC | Type: | --- |
Regression: | --- | Mount Type: | --- |
Documentation: | --- | CRM: | |
Verified Versions: | Category: | --- | |
oVirt Team: | --- | RHEL 7.3 requirements from Atomic Host: | |
Cloudforms Team: | --- | Target Upstream Version: | |
Embargoed: | |||
Bug Depends On: | 1776368 | ||
Bug Blocks: | 1776369 |
Description
Guilherme de Almeida Suckevicz
2019-11-25 14:32:49 UTC
Created kernel tracking bugs for this issue: Affects: fedora-all [bug 1776368] This was fixed for Fedora with the 5.3.x kernel rebases. External References: Reference and upstream commit: https://github.com/torvalds/linux/commit/a21b7f0cff1906a93a0130b74713b15a0b36481d Statement: There was no shipped kernel version were seen affected with this problem. These files are not built in our source code. This bug is now closed. Further updates for individual products will be reflected on the CVE page(s): https://access.redhat.com/security/cve/cve-2019-19079 |