Unrated severityNVD Advisory· Published Nov 18, 2019· Updated Aug 5, 2024
CVE-2019-19045
CVE-2019-19045
Description
A memory leak in the mlx5_fpga_conn_create_cq() function in drivers/net/ethernet/mellanox/mlx5/core/fpga/conn.c in the Linux kernel before 5.3.11 allows attackers to cause a denial of service (memory consumption) by triggering mlx5_vector2eqn() failures, aka CID-c8c2a057fdc7.
Affected products
101- Linux/Linux kerneldescription
- osv-coords100 versionspkg:rpm/opensuse/kernel-debug&distro=openSUSE%20Leap%2015.1pkg:rpm/opensuse/kernel-default&distro=openSUSE%20Leap%2015.1pkg:rpm/opensuse/kernel-docs&distro=openSUSE%20Leap%2015.1pkg:rpm/opensuse/kernel-kvmsmall&distro=openSUSE%20Leap%2015.1pkg:rpm/opensuse/kernel-obs-build&distro=openSUSE%20Leap%2015.1pkg:rpm/opensuse/kernel-obs-qa&distro=openSUSE%20Leap%2015.1pkg:rpm/opensuse/kernel-source&distro=openSUSE%20Leap%2015.1pkg:rpm/opensuse/kernel-syms&distro=openSUSE%20Leap%2015.1pkg:rpm/opensuse/kernel-vanilla&distro=openSUSE%20Leap%2015.1pkg:rpm/suse/kernel-azure&distro=SUSE%20Linux%20Enterprise%20Module%20for%20Public%20Cloud%2015%20SP1pkg:rpm/suse/kernel-azure&distro=SUSE%20Linux%20Enterprise%20Server%2012%20SP4pkg:rpm/suse/kernel-azure&distro=SUSE%20Linux%20Enterprise%20Server%2012%20SP5pkg:rpm/suse/kernel-azure&distro=SUSE%20Linux%20Enterprise%20Server%20for%20SAP%20Applications%2012%20SP4pkg:rpm/suse/kernel-azure&distro=SUSE%20Linux%20Enterprise%20Server%20for%20SAP%20Applications%2012%20SP5pkg:rpm/suse/kernel-default&distro=SUSE%20Linux%20Enterprise%20High%20Availability%20Extension%2012%20SP4pkg:rpm/suse/kernel-default&distro=SUSE%20Linux%20Enterprise%20High%20Availability%20Extension%2012%20SP5pkg:rpm/suse/kernel-default&distro=SUSE%20Linux%20Enterprise%20High%20Availability%20Extension%2015pkg:rpm/suse/kernel-default&distro=SUSE%20Linux%20Enterprise%20High%20Availability%20Extension%2015%20SP1pkg:rpm/suse/kernel-default&distro=SUSE%20Linux%20Enterprise%20High%20Performance%20Computing%2015-ESPOSpkg:rpm/suse/kernel-default&distro=SUSE%20Linux%20Enterprise%20High%20Performance%20Computing%2015-LTSSpkg:rpm/suse/kernel-default&distro=SUSE%20Linux%20Enterprise%20Live%20Patching%2012%20SP4pkg:rpm/suse/kernel-default&distro=SUSE%20Linux%20Enterprise%20Live%20Patching%2012%20SP5pkg:rpm/suse/kernel-default&distro=SUSE%20Linux%20Enterprise%20Live%20Patching%2015pkg:rpm/suse/kernel-default&distro=SUSE%20Linux%20Enterprise%20Live%20Patching%2015%20SP1pkg:rpm/suse/kernel-default&distro=SUSE%20Linux%20Enterprise%20Module%20for%20Basesystem%2015%20SP1pkg:rpm/suse/kernel-default&distro=SUSE%20Linux%20Enterprise%20Module%20for%20Legacy%2015%20SP1pkg:rpm/suse/kernel-default&distro=SUSE%20Linux%20Enterprise%20Server%2012%20SP4pkg:rpm/suse/kernel-default&distro=SUSE%20Linux%20Enterprise%20Server%2012%20SP5pkg:rpm/suse/kernel-default&distro=SUSE%20Linux%20Enterprise%20Server%2015-LTSSpkg:rpm/suse/kernel-default&distro=SUSE%20Linux%20Enterprise%20Server%20for%20SAP%20Applications%2012%20SP4pkg:rpm/suse/kernel-default&distro=SUSE%20Linux%20Enterprise%20Server%20for%20SAP%20Applications%2012%20SP5pkg:rpm/suse/kernel-default&distro=SUSE%20Linux%20Enterprise%20Server%20for%20SAP%20Applications%2015pkg:rpm/suse/kernel-default&distro=SUSE%20Linux%20Enterprise%20Workstation%20Extension%2012%20SP4pkg:rpm/suse/kernel-default&distro=SUSE%20Linux%20Enterprise%20Workstation%20Extension%2012%20SP5pkg:rpm/suse/kernel-default&distro=SUSE%20Linux%20Enterprise%20Workstation%20Extension%2015%20SP1pkg:rpm/suse/kernel-docs&distro=SUSE%20Linux%20Enterprise%20High%20Performance%20Computing%2015-ESPOSpkg:rpm/suse/kernel-docs&distro=SUSE%20Linux%20Enterprise%20High%20Performance%20Computing%2015-LTSSpkg:rpm/suse/kernel-docs&distro=SUSE%20Linux%20Enterprise%20Module%20for%20Development%20Tools%2015%20SP1pkg:rpm/suse/kernel-docs&distro=SUSE%20Linux%20Enterprise%20Server%2015-LTSSpkg:rpm/suse/kernel-docs&distro=SUSE%20Linux%20Enterprise%20Server%20for%20SAP%20Applications%2015pkg:rpm/suse/kernel-docs&distro=SUSE%20Linux%20Enterprise%20Software%20Development%20Kit%2012%20SP4pkg:rpm/suse/kernel-docs&distro=SUSE%20Linux%20Enterprise%20Software%20Development%20Kit%2012%20SP5pkg:rpm/suse/kernel-livepatch-SLE15-SP1_Update_9&distro=SUSE%20Linux%20Enterprise%20Live%20Patching%2015%20SP1pkg:rpm/suse/kernel-livepatch-SLE15_Update_18&distro=SUSE%20Linux%20Enterprise%20Live%20Patching%2015pkg:rpm/suse/kernel-obs-build&distro=SUSE%20Linux%20Enterprise%20High%20Performance%20Computing%2015-ESPOSpkg:rpm/suse/kernel-obs-build&distro=SUSE%20Linux%20Enterprise%20High%20Performance%20Computing%2015-LTSSpkg:rpm/suse/kernel-obs-build&distro=SUSE%20Linux%20Enterprise%20Module%20for%20Development%20Tools%2015%20SP1pkg:rpm/suse/kernel-obs-build&distro=SUSE%20Linux%20Enterprise%20Server%2015-LTSSpkg:rpm/suse/kernel-obs-build&distro=SUSE%20Linux%20Enterprise%20Server%20for%20SAP%20Applications%2015pkg:rpm/suse/kernel-obs-build&distro=SUSE%20Linux%20Enterprise%20Software%20Development%20Kit%2012%20SP4pkg:rpm/suse/kernel-obs-build&distro=SUSE%20Linux%20Enterprise%20Software%20Development%20Kit%2012%20SP5pkg:rpm/suse/kernel-rt_debug&distro=SUSE%20Linux%20Enterprise%20Real%20Time%2012%20SP4pkg:rpm/suse/kernel-rt_debug&distro=SUSE%20Linux%20Enterprise%20Real%20Time%2012%20SP5pkg:rpm/suse/kernel-rt_debug&distro=SUSE%20Real%20Time%20Module%2015%20SP1pkg:rpm/suse/kernel-rt&distro=SUSE%20Linux%20Enterprise%20Real%20Time%2012%20SP4pkg:rpm/suse/kernel-rt&distro=SUSE%20Linux%20Enterprise%20Real%20Time%2012%20SP5pkg:rpm/suse/kernel-rt&distro=SUSE%20Real%20Time%20Module%2015%20SP1pkg:rpm/suse/kernel-source-azure&distro=SUSE%20Linux%20Enterprise%20Module%20for%20Public%20Cloud%2015%20SP1pkg:rpm/suse/kernel-source-azure&distro=SUSE%20Linux%20Enterprise%20Server%2012%20SP4pkg:rpm/suse/kernel-source-azure&distro=SUSE%20Linux%20Enterprise%20Server%2012%20SP5pkg:rpm/suse/kernel-source-azure&distro=SUSE%20Linux%20Enterprise%20Server%20for%20SAP%20Applications%2012%20SP4pkg:rpm/suse/kernel-source-azure&distro=SUSE%20Linux%20Enterprise%20Server%20for%20SAP%20Applications%2012%20SP5pkg:rpm/suse/kernel-source&distro=SUSE%20Linux%20Enterprise%20High%20Performance%20Computing%2015-ESPOSpkg:rpm/suse/kernel-source&distro=SUSE%20Linux%20Enterprise%20High%20Performance%20Computing%2015-LTSSpkg:rpm/suse/kernel-source&distro=SUSE%20Linux%20Enterprise%20Module%20for%20Basesystem%2015%20SP1pkg:rpm/suse/kernel-source&distro=SUSE%20Linux%20Enterprise%20Module%20for%20Development%20Tools%2015%20SP1pkg:rpm/suse/kernel-source&distro=SUSE%20Linux%20Enterprise%20Server%2012%20SP4pkg:rpm/suse/kernel-source&distro=SUSE%20Linux%20Enterprise%20Server%2012%20SP5pkg:rpm/suse/kernel-source&distro=SUSE%20Linux%20Enterprise%20Server%2015-LTSSpkg:rpm/suse/kernel-source&distro=SUSE%20Linux%20Enterprise%20Server%20for%20SAP%20Applications%2012%20SP4pkg:rpm/suse/kernel-source&distro=SUSE%20Linux%20Enterprise%20Server%20for%20SAP%20Applications%2012%20SP5pkg:rpm/suse/kernel-source&distro=SUSE%20Linux%20Enterprise%20Server%20for%20SAP%20Applications%2015pkg:rpm/suse/kernel-source-rt&distro=SUSE%20Linux%20Enterprise%20Real%20Time%2012%20SP4pkg:rpm/suse/kernel-source-rt&distro=SUSE%20Linux%20Enterprise%20Real%20Time%2012%20SP5pkg:rpm/suse/kernel-source-rt&distro=SUSE%20Real%20Time%20Module%2015%20SP1pkg:rpm/suse/kernel-syms-azure&distro=SUSE%20Linux%20Enterprise%20Module%20for%20Public%20Cloud%2015%20SP1pkg:rpm/suse/kernel-syms-azure&distro=SUSE%20Linux%20Enterprise%20Server%2012%20SP4pkg:rpm/suse/kernel-syms-azure&distro=SUSE%20Linux%20Enterprise%20Server%2012%20SP5pkg:rpm/suse/kernel-syms-azure&distro=SUSE%20Linux%20Enterprise%20Server%20for%20SAP%20Applications%2012%20SP4pkg:rpm/suse/kernel-syms-azure&distro=SUSE%20Linux%20Enterprise%20Server%20for%20SAP%20Applications%2012%20SP5pkg:rpm/suse/kernel-syms&distro=SUSE%20Linux%20Enterprise%20High%20Performance%20Computing%2015-ESPOSpkg:rpm/suse/kernel-syms&distro=SUSE%20Linux%20Enterprise%20High%20Performance%20Computing%2015-LTSSpkg:rpm/suse/kernel-syms&distro=SUSE%20Linux%20Enterprise%20Module%20for%20Development%20Tools%2015%20SP1pkg:rpm/suse/kernel-syms&distro=SUSE%20Linux%20Enterprise%20Server%2012%20SP4pkg:rpm/suse/kernel-syms&distro=SUSE%20Linux%20Enterprise%20Server%2012%20SP5pkg:rpm/suse/kernel-syms&distro=SUSE%20Linux%20Enterprise%20Server%2015-LTSSpkg:rpm/suse/kernel-syms&distro=SUSE%20Linux%20Enterprise%20Server%20for%20SAP%20Applications%2012%20SP4pkg:rpm/suse/kernel-syms&distro=SUSE%20Linux%20Enterprise%20Server%20for%20SAP%20Applications%2012%20SP5pkg:rpm/suse/kernel-syms&distro=SUSE%20Linux%20Enterprise%20Server%20for%20SAP%20Applications%2015pkg:rpm/suse/kernel-syms-rt&distro=SUSE%20Linux%20Enterprise%20Real%20Time%2012%20SP4pkg:rpm/suse/kernel-syms-rt&distro=SUSE%20Linux%20Enterprise%20Real%20Time%2012%20SP5pkg:rpm/suse/kernel-syms-rt&distro=SUSE%20Real%20Time%20Module%2015%20SP1pkg:rpm/suse/kernel-vanilla&distro=SUSE%20Linux%20Enterprise%20High%20Performance%20Computing%2015-ESPOSpkg:rpm/suse/kernel-vanilla&distro=SUSE%20Linux%20Enterprise%20High%20Performance%20Computing%2015-LTSSpkg:rpm/suse/kernel-vanilla&distro=SUSE%20Linux%20Enterprise%20Server%2015-LTSSpkg:rpm/suse/kernel-vanilla&distro=SUSE%20Linux%20Enterprise%20Server%20for%20SAP%20Applications%2015pkg:rpm/suse/kernel-zfcpdump&distro=SUSE%20Linux%20Enterprise%20Module%20for%20Basesystem%2015%20SP1pkg:rpm/suse/kernel-zfcpdump&distro=SUSE%20Linux%20Enterprise%20Server%2015-LTSSpkg:rpm/suse/kgraft-patch-SLE12-SP4_Update_12&distro=SUSE%20Linux%20Enterprise%20Live%20Patching%2012%20SP4pkg:rpm/suse/kgraft-patch-SLE12-SP5_Update_3&distro=SUSE%20Linux%20Enterprise%20Live%20Patching%2012%20SP5
< 4.12.14-lp151.28.40.1+ 99 more
- (no CPE)range: < 4.12.14-lp151.28.40.1
- (no CPE)range: < 4.12.14-lp151.28.40.1
- (no CPE)range: < 4.12.14-lp151.28.40.1
- (no CPE)range: < 4.12.14-lp151.28.40.1
- (no CPE)range: < 4.12.14-lp151.28.40.1
- (no CPE)range: < 4.12.14-lp151.28.40.1
- (no CPE)range: < 4.12.14-lp151.28.40.1
- (no CPE)range: < 4.12.14-lp151.28.40.1
- (no CPE)range: < 4.12.14-lp151.28.40.1
- (no CPE)range: < 4.12.14-8.27.1
- (no CPE)range: < 4.12.14-6.37.1
- (no CPE)range: < 4.12.14-16.10.1
- (no CPE)range: < 4.12.14-6.37.1
- (no CPE)range: < 4.12.14-16.10.1
- (no CPE)range: < 4.12.14-95.48.1
- (no CPE)range: < 4.12.14-122.17.1
- (no CPE)range: < 4.12.14-150.52.1
- (no CPE)range: < 4.12.14-197.34.1
- (no CPE)range: < 4.12.14-150.52.1
- (no CPE)range: < 4.12.14-150.52.1
- (no CPE)range: < 4.12.14-95.48.1
- (no CPE)range: < 4.12.14-122.17.1
- (no CPE)range: < 4.12.14-150.52.1
- (no CPE)range: < 4.12.14-197.34.1
- (no CPE)range: < 4.12.14-197.34.1
- (no CPE)range: < 4.12.14-197.34.1
- (no CPE)range: < 4.12.14-95.48.1
- (no CPE)range: < 4.12.14-122.17.1
- (no CPE)range: < 4.12.14-150.52.1
- (no CPE)range: < 4.12.14-95.48.1
- (no CPE)range: < 4.12.14-122.17.1
- (no CPE)range: < 4.12.14-150.52.1
- (no CPE)range: < 4.12.14-95.48.1
- (no CPE)range: < 4.12.14-122.17.1
- (no CPE)range: < 4.12.14-197.34.1
- (no CPE)range: < 4.12.14-150.52.1
- (no CPE)range: < 4.12.14-150.52.1
- (no CPE)range: < 4.12.14-197.34.1
- (no CPE)range: < 4.12.14-150.52.1
- (no CPE)range: < 4.12.14-150.52.1
- (no CPE)range: < 4.12.14-95.48.1
- (no CPE)range: < 4.12.14-122.17.2
- (no CPE)range: < 1-3.5.1
- (no CPE)range: < 1-1.5.1
- (no CPE)range: < 4.12.14-150.52.1
- (no CPE)range: < 4.12.14-150.52.1
- (no CPE)range: < 4.12.14-197.34.1
- (no CPE)range: < 4.12.14-150.52.1
- (no CPE)range: < 4.12.14-150.52.1
- (no CPE)range: < 4.12.14-95.48.1
- (no CPE)range: < 4.12.14-122.17.1
- (no CPE)range: < 4.12.14-8.12.1
- (no CPE)range: < 4.12.14-6.3.1
- (no CPE)range: < 4.12.14-14.17.1
- (no CPE)range: < 4.12.14-8.12.1
- (no CPE)range: < 4.12.14-6.3.1
- (no CPE)range: < 4.12.14-14.17.1
- (no CPE)range: < 4.12.14-8.27.1
- (no CPE)range: < 4.12.14-6.37.1
- (no CPE)range: < 4.12.14-16.10.1
- (no CPE)range: < 4.12.14-6.37.1
- (no CPE)range: < 4.12.14-16.10.1
- (no CPE)range: < 4.12.14-150.52.1
- (no CPE)range: < 4.12.14-150.52.1
- (no CPE)range: < 4.12.14-197.34.1
- (no CPE)range: < 4.12.14-197.34.1
- (no CPE)range: < 4.12.14-95.48.1
- (no CPE)range: < 4.12.14-122.17.1
- (no CPE)range: < 4.12.14-150.52.1
- (no CPE)range: < 4.12.14-95.48.1
- (no CPE)range: < 4.12.14-122.17.1
- (no CPE)range: < 4.12.14-150.52.1
- (no CPE)range: < 4.12.14-8.12.1
- (no CPE)range: < 4.12.14-6.3.1
- (no CPE)range: < 4.12.14-14.17.1
- (no CPE)range: < 4.12.14-8.27.1
- (no CPE)range: < 4.12.14-6.37.1
- (no CPE)range: < 4.12.14-16.10.1
- (no CPE)range: < 4.12.14-6.37.1
- (no CPE)range: < 4.12.14-16.10.1
- (no CPE)range: < 4.12.14-150.52.1
- (no CPE)range: < 4.12.14-150.52.1
- (no CPE)range: < 4.12.14-197.34.1
- (no CPE)range: < 4.12.14-95.48.1
- (no CPE)range: < 4.12.14-122.17.1
- (no CPE)range: < 4.12.14-150.52.1
- (no CPE)range: < 4.12.14-95.48.1
- (no CPE)range: < 4.12.14-122.17.1
- (no CPE)range: < 4.12.14-150.52.1
- (no CPE)range: < 4.12.14-8.12.1
- (no CPE)range: < 4.12.14-6.3.1
- (no CPE)range: < 4.12.14-14.17.1
- (no CPE)range: < 4.12.14-150.52.1
- (no CPE)range: < 4.12.14-150.52.1
- (no CPE)range: < 4.12.14-150.52.1
- (no CPE)range: < 4.12.14-150.52.1
- (no CPE)range: < 4.12.14-197.34.1
- (no CPE)range: < 4.12.14-150.52.1
- (no CPE)range: < 1-6.3.1
- (no CPE)range: < 1-8.5.1
Patches
1c8c2a057fdc7net/mlx5: prevent memory leak in mlx5_fpga_conn_create_cq
1 file changed · +3 −1
drivers/net/ethernet/mellanox/mlx5/core/fpga/conn.c+3 −1 modified@@ -464,8 +464,10 @@ static int mlx5_fpga_conn_create_cq(struct mlx5_fpga_conn *conn, int cq_size) } err = mlx5_vector2eqn(mdev, smp_processor_id(), &eqn, &irqn); - if (err) + if (err) { + kvfree(in); goto err_cqwq; + } cqc = MLX5_ADDR_OF(create_cq_in, in, cq_context); MLX5_SET(cqc, cqc, log_cq_size, ilog2(cq_size));
Vulnerability mechanics
Generated on May 9, 2026. Inputs: CWE entries + fix-commit diffs from this CVE's patches. Citations validated against bundle.
References
9- lists.opensuse.org/opensuse-security-announce/2020-03/msg00021.htmlmitrevendor-advisoryx_refsource_SUSE
- usn.ubuntu.com/4225-1/mitrevendor-advisoryx_refsource_UBUNTU
- usn.ubuntu.com/4225-2/mitrevendor-advisoryx_refsource_UBUNTU
- usn.ubuntu.com/4226-1/mitrevendor-advisoryx_refsource_UBUNTU
- usn.ubuntu.com/4227-1/mitrevendor-advisoryx_refsource_UBUNTU
- usn.ubuntu.com/4227-2/mitrevendor-advisoryx_refsource_UBUNTU
- cdn.kernel.org/pub/linux/kernel/v5.x/ChangeLog-5.3.11mitrex_refsource_MISC
- github.com/torvalds/linux/commit/c8c2a057fdc7de1cd16f4baa51425b932a42eb39mitrex_refsource_MISC
- security.netapp.com/advisory/ntap-20191205-0001/mitrex_refsource_CONFIRM
News mentions
0No linked articles in our index yet.