Disclosure summary
mwifiex_tm_cmd in drivers/net/wireless/marvell/mwifiex/cfg80211.c in the Linux kernel before 5.1.6 has some error-handling cases that did not free allocated hostcmd memory, aka CID-003b686ace82. This will cause a memory leak and denial of service.
Source-reported weakness categories
CWE-401
Source-specific records & product guidance
Sources retain their own attribution and scoring. Follow the original record to confirm affected versions, fixed releases, and configuration conditions.
NIST National Vulnerability Database · NVD-CVE-2019-20095
Open original source · Updated Oct 08, 2026
Only CPE matches marked vulnerable=true are indexed. AND/OR platform conditions must be checked in the original NVD record.
| Vendor | Product / association | Version / bounds |
|---|---|---|
| linux | linux_kernel | * {"versionEndExcluding":"5.1.6"} |
| opensuse | leap | 15.1 |
| netapp | active_iq_unified_manager | - |
| netapp | cloud_backup | - |
| netapp | data_availability_services | - |
| netapp | e-series_santricity_os_controller | * {"versionStartIncluding":"11.0.0","versionEndIncluding":"11.70.1"} |
| netapp | hci_management_node | - |
| netapp | solidfire | - |
| netapp | steelstore_cloud_integrated_storage | - |
| netapp | a700s_firmware | - |
| netapp | 8300_firmware | - |
| netapp | 8700_firmware | - |
| netapp | a400_firmware | - |
| netapp | h610s_firmware | - |
Original records & references
- NIST NVD record
- CVE Program record
- cdn.kernel.org — Release Notes, Vendor Advisory
- git.kernel.org — Release Notes, Vendor Advisory
- security.netapp.com — Third Party Advisory
- cdn.kernel.org — Release Notes, Vendor Advisory
- git.kernel.org — Release Notes, Vendor Advisory
- security.netapp.com — Third Party Advisory
PUBLISHED 2019-12-30T00:15:11-05:00
MODIFIED 2026-10-08T17:17:19-04:00
INGESTED 2026-10-10T20:50:19-04:00