Back

MEDIUM

kernel: dos in i40e_setup_macvlans() function in drivers/net/ethernet/intel/i40e/i40e_main.c

Published Nov 18, 2019

Description

A memory leak in the i40e_setup_macvlans() function in drivers/net/ethernet/intel/i40e/i40e_main.c in the Linux kernel through 5.3.11 allows attackers to cause a denial of service (memory consumption) by triggering i40e_setup_channel() failures, aka CID-27d461333459.

Affected products

Remediation

Red Hat statement

This issue is rated as having Moderate impact because of the preconditions needed to trigger the error code path.

Red Hat mitigation

In order to mitigate this issue it is possible to prevent the affected code from being loaded by blacklisting the kernel module i40e. For instructions relating to how to blacklist a kernel module refer to: https://access.redhat.com/solutions/41278 .

References (10)

Change history (0)

No recorded changes yet.

Sources
CVE.org / MITRE
Status PUBLISHED
Assigner mitre
Published Nov 18, 2019
Updated Aug 5, 2024
Reserved Nov 18, 2019
NVD
Status Modified
Modified Jun 17, 2026
Red Hat
Severity Moderate
Public date Nov 18, 2019
ENISA EUVD
Assigner mitre
Published Nov 18, 2019
Updated Aug 5, 2024
Exploited since n/a
EUVD-2019-8682