7.8
CVSSv2

CVE-2019-19060

Published: 18/11/2019 Updated: 19/01/2023
CVSS v2 Base Score: 7.8 | Impact Score: 6.9 | Exploitability Score: 10
CVSS v3 Base Score: 7.5 | Impact Score: 3.6 | Exploitability Score: 3.9
VMScore: 694
Vector: AV:N/AC:L/Au:N/C:N/I:N/A:C

Vulnerability Summary

A memory leak in the adis_update_scan_mode() function in drivers/iio/imu/adis_buffer.c in the Linux kernel prior to 5.3.9 allows malicious users to cause a denial of service (memory consumption), aka CID-ab612b1daf41.

Vulnerability Trend

Vulnerable Product Search on Vulmon Subscribe to Product

linux linux kernel

netapp cloud backup -

netapp steelstore cloud integrated storage -

netapp aff baseboard management controller -

netapp data availability services -

netapp solidfire \\& hci management node -

netapp active iq unified manager -

netapp solidfire\\, enterprise sds \\& hci storage node -

broadcom brocade fabric operating system firmware -

netapp fas\\/aff baseboard management controller -

netapp e-series santricity os controller 11.0

netapp e-series santricity os controller 11.0.0

netapp e-series santricity os controller 11.20

netapp e-series santricity os controller 11.25

netapp e-series santricity os controller 11.30

netapp e-series santricity os controller 11.30.5r3

netapp e-series santricity os controller 11.40

netapp e-series santricity os controller 11.40.3r2

netapp e-series santricity os controller 11.40.5

netapp e-series santricity os controller 11.50.1

netapp e-series santricity os controller 11.50.2

netapp e-series santricity os controller 11.60

netapp e-series santricity os controller 11.60.0

netapp e-series santricity os controller 11.60.1

netapp e-series santricity os controller 11.60.3

netapp e-series santricity os controller 11.70.1

netapp e-series santricity os controller 11.70.2

netapp hci baseboard management controller h610s

netapp hci_compute_node_firmware -

netapp solidfire_baseboard_management_controller_firmware -

canonical ubuntu linux 18.04

canonical ubuntu linux 19.04

canonical ubuntu linux 14.04

opensuse leap 15.1

canonical ubuntu linux 19.10

canonical ubuntu linux 16.04

Vendor Advisories

A memory leak in the adis_update_scan_mode() function in drivers/iio/imu/adis_bufferc in the Linux kernel before 539 allows attackers to cause a denial of service (memory consumption), aka CID-ab612b1daf41 (CVE-2019-19060) A bypass was found for the Spectre v1 hardening in the eBPF engine of the Linux kernel The code in the kernel/bpf/verifier ...