CVE-2019-19044 - CVE House
Back to Database
Status published High CVE-2019-19044

Two memory leaks in the v3d_submit_cl_ioctl() function in drivers/gpu/drm/v3d/v3d_gem.c in...

Vulnerability Description

Two memory leaks in the v3d_submit_cl_ioctl() function in drivers/gpu/drm/v3d/v3d_gem.c in the Linux kernel before 5.3.11 allow attackers to cause a denial of service (memory consumption) by triggering kcalloc() or v3d_job_init() failures, aka CID-29cd13cfd762.

Impact Analysis

Refer to official advisory for detailed impact metrics.

Remediation

Ensure systems are updated to the latest vendor-supplied patch levels.

THREAT MONITOR

Am I Vulnerable?

Launch our assessment wizard to check if your infrastructure is exposed to • CVE-2019-19044

Credits & Attribution

No credits recorded in the NVD database.

Affected Vendor

Affected Software

linux kernel, active iq unified manager, aff baseboard management controller, cloud backup, data availability services, e-series santricity os controller, fas\/aff baseboard management controller, hci baseboard management controller, solidfire\, enterprise sds \& hci storage node, solidfire \& hci management node, steelstore cloud integrated storage, brocade fabric operating system firmware, hci compute node firmware, solidfire baseboard management controller firmware, ubuntu linux
Vulnerable Versions:
5.3, 11.0, 11.0.0, 11.20, 11.25, 11.30, 11.30.5r3, 11.40, 11.40.3r2, 11.40.5, 11.50.1, 11.50.2, 11.60, 11.60.0, 11.60.1, 11.60.3, 11.70.1, 11.70.2, h610s, 18.04, 19.10

Timeline

Official Publish: November 18th, 2019
Last Modified: August 5th, 2024
Added to House: July 20th, 2026

CVSS Vectors

V3: CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:H

Weaknesses (CWE)

No CWE data available

MITRE ATT&CK TTPs

No associated TTPs found for this vulnerability.