kernel: memory leak in the nl80211_get_ftm_responder_stats() function in net/wireless/nl80211.c allows DoS
Published Nov 18, 2019
5.5
MEDIUMCVSS 3.1
EPSS 0.41%
Description
A memory leak in the nl80211_get_ftm_responder_stats() function in net/wireless/nl80211.c in the Linux kernel through 5.3.11 allows attackers to cause a denial of service (memory consumption) by triggering nl80211hdr_put() failures, aka CID-1399c59fa929. NOTE: third parties dispute the relevance of this because it occurs on a code path where a successful allocation has already occurred
Affected products
No data.
- 18.04
- 19.04
- 19.10
- 30
- 31
- ≤ 5.3.11
No data.
Red Hat Enterprise Linux 7
kernel-0:3.10.0-1160.el7
Fixed · RHSA-2020:4060
Red Hat Enterprise Linux 7
kernel-rt-0:3.10.0-1160.rt56.1131.el7
Fixed · RHSA-2020:4062
Red Hat Enterprise Linux 8
kernel-0:4.18.0-193.el8
Fixed · RHSA-2020:1769
Red Hat Enterprise Linux 8
kernel-rt-0:4.18.0-193.rt13.51.el8
Fixed · RHSA-2020:1567
Red Hat Enterprise Linux 5
kernel
Out of support scope
Red Hat Enterprise Linux 6
kernel
Out of support scope
Red Hat Enterprise Linux 7
kernel-alt
Not affected
Red Hat Enterprise MRG 2
kernel-rt
Out of support scope
| Product | Package | State | Advisory |
|---|---|---|---|
| Red Hat Enterprise Linux 7 | kernel-0:3.10.0-1160.el7 | Fixed | RHSA-2020:4060 |
| Red Hat Enterprise Linux 7 | kernel-rt-0:3.10.0-1160.rt56.1131.el7 | Fixed | RHSA-2020:4062 |
| Red Hat Enterprise Linux 8 | kernel-0:4.18.0-193.el8 | Fixed | RHSA-2020:1769 |
| Red Hat Enterprise Linux 8 | kernel-rt-0:4.18.0-193.rt13.51.el8 | Fixed | RHSA-2020:1567 |
| Red Hat Enterprise Linux 5 | kernel | Out of support scope | n/a |
| Red Hat Enterprise Linux 6 | kernel | Out of support scope | n/a |
| Red Hat Enterprise Linux 7 | kernel-alt | Not affected | n/a |
| Red Hat Enterprise MRG 2 | kernel-rt | Out of support scope | n/a |
No package ranges for this CVE.
Remediation
Red Hat statement
This issue is rated as having Moderate impact because of the preconditions needed to trigger the resource cleanup code path.
Red Hat mitigation
In order to mitigate this issue it is possible to prevent the affected code from being loaded by blacklisting the kernel module cfg80211. For instructions relating to how to blacklist a kernel module refer to: https://access.redhat.com/solutions/41278 .
References (12)
- https://access.redhat.com/security/cve/CVE-2019-19055 Vendor Advisory
- https://bugzilla.redhat.com/show_bug.cgi?id=1775074 Issue Tracking
- https://bugzilla.suse.com/show_bug.cgi?id=1157319 x_refsource_MISCIssue TrackingThird Party Advisory
- https://euvd.enisa.europa.eu/vulnerability/EUVD-2019-8694 Advisory
- https://github.com/torvalds/linux/commit/1399c59fa92984836db90538cf92397fe7caaa57 x_refsource_MISCPatchThird Party Advisory
- https://lists.fedoraproject.org/archives/list/package-announce%40lists.fedoraproject.org/message/O3PSDE6PTOTVBK2YTKB2TFQP2SUBVSNF/ vendor-advisoryx_refsource_FEDORA
- https://lists.fedoraproject.org/archives/list/package-announce%40lists.fedoraproject.org/message/PY7LJMSPAGRIKABJPDKQDTXYW3L5RX2T/ vendor-advisoryx_refsource_FEDORA
- https://nvd.nist.gov/vuln/detail/CVE-2019-19055
- https://usn.ubuntu.com/4225-1/ vendor-advisoryx_refsource_UBUNTUThird Party Advisory
- https://usn.ubuntu.com/4225-2/ vendor-advisoryx_refsource_UBUNTUThird Party Advisory
- https://usn.ubuntu.com/4226-1/ vendor-advisoryx_refsource_UBUNTUThird Party Advisory
- https://www.cve.org/CVERecord?id=CVE-2019-19055
Change history (0)
No recorded changes yet.
CVE.org / MITRE
CISA Vulnrichment
No data
GitHub
No data