4.7
CVSSv3

CVE-2019-19965

Published: 25/12/2019 Updated: 31/03/2022
CVSS v2 Base Score: 1.9 | Impact Score: 2.9 | Exploitability Score: 3.4
CVSS v3 Base Score: 4.7 | Impact Score: 3.6 | Exploitability Score: 1
VMScore: 170
Vector: AV:L/AC:M/Au:N/C:N/I:N/A:P

Vulnerability Summary

In the Linux kernel up to and including 5.4.6, there is a NULL pointer dereference in drivers/scsi/libsas/sas_discover.c because of mishandling of port disconnection during discovery, related to a PHY down race condition, aka CID-f70267f379b5.

Vulnerability Trend

Vulnerable Product Search on Vulmon Subscribe to Product

linux linux kernel

debian debian linux 8.0

canonical ubuntu linux 14.04

canonical ubuntu linux 16.04

canonical ubuntu linux 18.04

canonical ubuntu linux 19.10

netapp active iq unified manager -

netapp cloud backup -

netapp data availability services -

netapp e-series santricity os controller

netapp hci management node -

netapp solidfire -

netapp steelstore cloud integrated storage -

opensuse leap 15.1

netapp a700s_firmware -

netapp h610s_firmware -

netapp 8300_firmware -

netapp 8700_firmware -

netapp a400_firmware -