A memory leak in the bnxtrecreatesrq() function in drivers/infiniband/hw/bnxtre/ib_verbs.c in the Linux kernel through 5.3.11 allows attackers to cause a denial of service (memory consumption) by triggering copy to udata failures, aka CID-4a9d46a9fe14.
[
{
"id": "CVE-2019-19077-2c38f909",
"signature_version": "v1",
"digest": {
"threshold": 0.9,
"line_hashes": [
"68364306202676163950958059132136819240",
"131959715256636879201767218557630708491",
"115798451411837360896591031784460712888",
"94654614235443155965255111518161578724"
]
},
"deprecated": false,
"source": "https://github.com/torvalds/linux/commit/4a9d46a9fe14401f21df69cea97c62396d5fb053",
"signature_type": "Line",
"target": {
"file": "drivers/infiniband/hw/bnxt_re/ib_verbs.c"
}
},
{
"id": "CVE-2019-19077-2d4aa7c4",
"signature_version": "v1",
"digest": {
"function_hash": "82701909617611919301673764370315028802",
"length": 1721.0
},
"deprecated": false,
"source": "https://github.com/torvalds/linux/commit/4a9d46a9fe14401f21df69cea97c62396d5fb053",
"signature_type": "Function",
"target": {
"file": "drivers/infiniband/hw/bnxt_re/ib_verbs.c",
"function": "bnxt_re_create_srq"
}
}
]
"https://storage.googleapis.com/cve-osv-conversion/osv-output/CVE-2019-19077.json"