Tracker / CVE-2019-16995
CVE-2019-16995
High 7.5
In the Linux kernel before 5.0.3, a memory leak exits in hsr_dev_finalize() in net/hsr/hsr_device.c if hsr_add_port fails to add a port, which may cause denial of service, aka CID-6caabe7f197d.
Affected products and versions
| linux | linux_kernel |
|---|---|
| linux | linux_kernel · 3.17 → 3.18.137 |
| linux | linux_kernel · 4.14 → 4.14.107 |
| linux | linux_kernel · 4.19 → 4.19.30 |
| linux | linux_kernel · 4.20 → 4.20.17 |
| linux | linux_kernel · 4.4 → 4.4.177 |
| linux | linux_kernel · 4.9 → 4.9.164 |
| linux | linux_kernel · 5.0 → 5.0.3 |
| netapp | aff_a700s_firmware |
| netapp | data_availability_services |
| netapp | h300e_firmware |
| netapp | h300s_firmware |
| netapp | h410c_firmware |
| netapp | h410s_firmware |
| netapp | h500e_firmware |
| netapp | h500s_firmware |
| netapp | h610s_firmware |
| netapp | h700e_firmware |
| netapp | h700s_firmware |
| netapp | hci_management_node |
| netapp | service_processor |
| netapp | solidfire |
| netapp | steelstore_cloud_integrated_storage |
| opensuse | leap |
Analysis
This page is not indexable yet.Until it carries original analysis — what it actually exposes, how to check in two minutes whether a system was touched, what to do if it was — the page stays noindex. The database decides that, not the template.