Back

MEDIUM

kernel: memory leaks in the nfp_flower_spawn_phy_reprs() function in drivers/net/ethernet/netronome/nfp/flower/main.c leads to DoS

Published Nov 18, 2019

Description

Four memory leaks in the nfp_flower_spawn_phy_reprs() function in drivers/net/ethernet/netronome/nfp/flower/main.c in the Linux kernel before 5.3.4 allow attackers to cause a denial of service (memory consumption), aka CID-8572cea1461a.

Affected products

Remediation

Red Hat statement

This issue is rated as having Low impact because of the low memory conditions needed to trigger this issue.

Red Hat mitigation

To mitigate this issue, prevent module nfp from being loaded. Please see https://access.redhat.com/solutions/41278 for how to blacklist a kernel module to prevent it from loading automatically.

References (9)

Change history (0)

No recorded changes yet.

Sources
CVE.org / MITRE
Status PUBLISHED
Assigner mitre
Published Nov 18, 2019
Updated Aug 5, 2024
Reserved Nov 18, 2019
NVD
Status Modified
Modified Jun 17, 2026
Red Hat
Severity Low
Public date Sep 25, 2019
ENISA EUVD
Assigner mitre
Published Nov 18, 2019
Updated Aug 5, 2024
Exploited since n/a
EUVD-2019-8719