4.9
CVSSv2

CVE-2019-15211

Published: 19/08/2019 Updated: 09/11/2023
CVSS v2 Base Score: 4.9 | Impact Score: 6.9 | Exploitability Score: 3.9
CVSS v3 Base Score: 4.6 | Impact Score: 3.6 | Exploitability Score: 0.9
VMScore: 436
Vector: AV:L/AC:L/Au:N/C:N/I:N/A:C

Vulnerability Summary

An issue exists in the Linux kernel prior to 5.2.6. There is a use-after-free caused by a malicious USB device in the drivers/media/v4l2-core/v4l2-dev.c driver because drivers/media/radio/radio-raremono.c does not properly allocate memory.

Vulnerability Trend

Vulnerable Product Search on Vulmon Subscribe to Product

linux linux kernel

netapp h410c firmware -

netapp data availability services -

netapp solidfire & hci management node -

netapp active iq unified manager -

netapp solidfire baseboard management controller -

canonical ubuntu linux 18.04

canonical ubuntu linux 19.04

canonical ubuntu linux 16.04

debian debian linux 8.0

opensuse leap 15.0

opensuse leap 15.1

Vendor Advisories

Mailing Lists

Hi! I've previously reported vulnerabilities in the Linux kernel USB drivers on this list [1] found with syzkaller [2] The USB fuzzing project has been on hold for a while, but has been resumed earlier this year Here's a new bunch of 15 CVEs As an experiment this time I've requested CVEs for 2 bugs (CVE-2019-15290, CVE-2019-15291) that haven't ...