A memory leak in the fsl_lpspi_probe() function in drivers/spi/spi-fsl-lpspi.c in the Linux kernel through 5.3.11 allows attackers to cause a denial of service (memory consumption) by triggering pm_runtime_get_sync() failures, aka CID-057b8945f78f. NOTE: third parties dispute the relevance of this because an attacker cannot realistically control these failures at probe time
Metrics
Affected Vendors & Products
References
History
Tue, 27 Aug 2024 20:00:00 +0000
Type | Values Removed | Values Added |
---|---|---|
First Time appeared |
Fedoraproject
Fedoraproject fedora |
|
CPEs | cpe:2.3:o:fedoraproject:fedora:30:*:*:*:*:*:*:* cpe:2.3:o:fedoraproject:fedora:31:*:*:*:*:*:*:* |
|
Vendors & Products |
Fedoraproject
Fedoraproject fedora |
MITRE
Status: PUBLISHED
Assigner: mitre
Published: 2019-11-18T05:24:07
Updated: 2024-08-05T02:09:38.693Z
Reserved: 2019-11-18T00:00:00
Link: CVE-2019-19064
Vulnrichment
No data.
NVD
Status : Modified
Published: 2019-11-18T06:15:12.607
Modified: 2024-11-21T04:34:06.830
Link: CVE-2019-19064
Redhat