CVE-2019-19072

Updated: 2023-12-06

CWE: Uncontrolled Resource Consumption

Description:

A memory leak in the predicate_parse() function in kernel/trace/trace_events_filter.c in the Linux kernel through 5.3.11 allows attackers to cause a denial of service (memory consumption), aka CID-96c5c6e6a5b6.

CVSS3: 4.4


Vendor State

OS Vendor version Errata
Ubuntu 18.04 HWE 5.3.0-26.28~18.04.1 USN-4225-2
RHEL 8 4.18.0-240.el8 RHSA-2020:4431
Ubuntu 19.04 5.0.0-38.41 USN-4226-1
Ubuntu 18.04 Azure 5.0.0-1028.30~18.04.1 USN-4226-1
CentOS 8 4.18.0-240.el8 CESA-2020:4431
Oracle Linux 8 4.18.0-240.el8 ELSA-2020-4431
Ubuntu 19.10 5.3.0-26.28 USN-4225-1
Ubuntu 18.04 Azure Eoan 5.3.0-1009.10~18.04.1 USN-4225-1
AlmaLinux 8 4.18.0-240.el8 ALSA-2020:4431

KernelCare State

OS Original kernel version State
Ubuntu 18.04 HWE
Ready For Release
Ubuntu 18.04 GCP
5.0.0-1020.20~18.04.1 show all hide all
5.0.0-1021.21~18.04.1 5.0.0-1025.26~18.04.1 5.0.0-1026.27~18.04.1
Released
RHEL 8
4.18.0-107.el8 show all hide all
4.18.0-193.1.2.el8_2 4.18.0-193.28.1.el8_2 4.18.0-193.13.2.el8_2 4.18.0-80.11.2.el8_0 4.18.0-193.el8 4.18.0-80.1.2.el8_0 4.18.0-147.0.2.el8_1 4.18.0-147.0.3.el8_1 4.18.0-80.7.2.el8_0 4.18.0-80.4.2.el8_0 4.18.0-193.14.3.el8_2 4.18.0-147.5.1.el8_1 4.18.0-80.11.1.el8_0 4.18.0-147.el8 4.18.0-193.6.3.el8_2 4.18.0-147.3.1.el8_1 4.18.0-193.19.1.el8_2 4.18.0-80.el8 4.18.0-80.7.1.el8_0 4.18.0-147.8.1.el8_1
Released
Debian 10
4.19.37-5 show all hide all
4.19.98-1 4.19.132-1 4.19.67-2+deb10u1 4.19.98-1+deb10u1 4.19.118-2 4.19.118-2+deb10u1 4.19.37-5+deb10u2 4.19.67-2+deb10u2 4.19.67-2 4.19.37-5+deb10u1
Released
Proxmox VE 6
5.3.10-1-pve_5.3.10-1 show all hide all
5.3.7-1-pve_5.3.7-1 5.0.21-4-pve_5.0.21-8 5.0.21-1-pve_5.0.21-2 5.0.21-5-pve_5.0.21-10 5.0.18-1-pve_5.0.18-3 5.0.15-1-pve_5.0.15-1 5.0.12-1-pve_5.0.12-1 5.0.18-1-pve_5.0.18-1 5.0.18-1-pve_5.0.18-2 5.0.21-1-pve_5.0.21-1 5.0.21-2-pve_5.0.21-3 5.0.21-2-pve_5.0.21-6 5.0.21-4-pve_5.0.21-9 5.0.8-1-pve_5.0.8-1 5.0.8-2-pve_5.0.8-2 5.3.1-1-pve_5.3.1-1 5.0.21-3-pve_5.0.21-7 5.0.21-2-pve_5.0.21-4
Released
Ubuntu 19.04
Ready For Release
Ubuntu 18.04 Azure
5.0.0-1020.21~18.04.1 show all hide all
5.0.0-1022.23~18.04.1 5.0.0-1018.19~18.04.1 5.0.0-1023.24~18.04.1 4.18.0-1011.11~18.04.1 4.18.0-1019.19~18.04.1 4.18.0-1014.14~18.04.1 4.18.0-1013.13~18.04.1 4.18.0-1024.25~18.04.1 5.0.0-1016.17~18.04.1 5.0.0-1019.20~18.04.1 5.0.0-1021.22~18.04.1 5.0.0-1027.29~18.04.1 4.18.0-1023.24~18.04.1 5.0.0-1025.27~18.04.1 4.18.0-1018.18~18.04.1 4.18.0-1020.20~18.04.1 5.0.0-1014.14~18.04.1
Released
CentOS 8
4.18.0-193.19.1.el8_2 show all hide all
4.18.0-80.el8 4.18.0-80.7.1.el8_0 4.18.0-80.11.1.el8_0 4.18.0-193.1.2.el8_2 4.18.0-147.8.1.el8_1 4.18.0-193.28.1.el8_2 4.18.0-80.7.2.el8_0 4.18.0-147.5.1.el8_1 4.18.0-147.el8 4.18.0-80.11.2.el8_0 4.18.0-147.3.1.el8_1 4.18.0-193.14.2.el8_2 4.18.0-147.0.3.el8_1 4.18.0-80.1.2.el8_0 4.18.0-193.el8 4.18.0-80.4.2.el8_0 4.18.0-193.6.3.el8_2
Released
Oracle Linux 8
4.18.0-80.1.2.el8_0 show all hide all
4.18.0-80.11.1.el8_0 4.18.0-80.7.2.el8_0 4.18.0-193.13.2.el8_2 4.18.0-147.8.1.el8_1 4.18.0-193.14.3.el8_2 4.18.0-193.el8 4.18.0-147.0.2.el8_1 4.18.0-193.1.2.el8_2 4.18.0-80.7.1.el8_0 4.18.0-193.6.3.el8_2 4.18.0-147.5.1.el8_1 4.18.0-193.28.1.el8_2 4.18.0-80.4.2.el8_0 4.18.0-80.11.2.el8_0 4.18.0-147.3.1.el8_1 4.18.0-193.19.1.el8_2 4.18.0-80.el8 4.18.0-147.0.3.el8_1 4.18.0-147.el8
Released
CloudLinux OS 8
4.18.0-147.8.1.el8.lve show all hide all
4.18.0-147.0.3.lve.el8 4.18.0-147.3.1.el8.lve.1 4.18.0-147.8.1.el8.lve.1 4.18.0-193.28.1.lve1.el8
Released
CloudLinux OS 7h
4.18.0-80.7.2.el7h show all hide all
4.18.0-147.0.3.el7h.lve 4.18.0-193.28.1.lve1.el7h 4.18.0-147.0.3.el7h 4.18.0-147.8.1.el7h.lve 4.18.0-147.3.1.el7h.lve.1 4.18.0-147.8.1.el7h.lve.1
Released
Debian 10 cloud
4.19.67-2+deb10u2 show all hide all
4.19.118-2 4.19.98-1+deb10u1 4.19.118-2+deb10u1 4.19.132-1
Released
Debian 9 backports
4.19.98-1~bpo9+1 show all hide all
4.19.118-2+deb10u1~bpo9+1 4.19.67-2+deb10u2~bpo9+1 4.19.132-1~deb9u2
Released
Ubuntu 19.10
Will Not Fix
Ubuntu 18.04 Azure Eoan
Will Not Fix
AlmaLinux 8
Ready For Release