UBUNTU-CVE-2019-17075
Dashboard / Vulnerabilities / UBUNTU-CVE-2019-17075
UBUNTU-CVE-2019-17075
Summary:
Details: An issue was discovered in write_tpt_entry in drivers/infiniband/hw/cxgb4/mem.c in the Linux kernel through 5.3.2. The cxgb4 driver is directly calling dma_map_single (a DMA function) from a stack variable. This could allow an attacker to trigger a Denial of Service, exploitable if this driver is used on an architecture for which this stack/DMA interaction has security relevance.
References: https://ubuntu.com/security/CVE-2019-17075, https://lore.kernel.org/lkml/[email protected], https://ubuntu.com/security/notices/USN-4208-1, https://ubuntu.com/security/notices/USN-4210-1, https://ubuntu.com/security/notices/USN-4211-1, https://ubuntu.com/security/notices/USN-4211-2, https://ubuntu.com/security/notices/USN-4226-1, https://www.cve.org/CVERecord?id=CVE-2019-17075
Affected packages
Package
Name: linux-aws
Purl: pkg:deb/ubuntu/linux-aws?arch=source&distro=trusty%2Fesm
Affected ranges
Type: ECOSYSTEM
Events:
