CVE-2019-12984 PUBLISHED

A NULL pointer dereference vulnerability in the function nfc_genl_deactivate_target() in net/nfc/netlink.c in the Linux kernel before 5.1.13 can be triggered by a malicious user-mode program that omits certain NFC attributes, leading to denial of service.

EPSS 0.57% · 68.4th percentile

Risk Scores

EPSS Score
0.57%
68.4th percentile

Affected Products

VendorProductVersions
Ubuntu:Pro:FIPS-updates:18.04:LTSlinux-aws-fips0, 4.15.0-2000.4
Ubuntu:16.04:LTSlinux-gcp4.13.0-1012.16, 4.15.0-1037.39~16.04.1, 4.15.0-1036.38~16.04.1
Ubuntu:20.04:LTSlinux-gke5.4.0-1054.57, 5.4.0-1053.56, 5.4.0-1052.55
Ubuntu:16.04:LTSlinux-oracle4.15.0-1013.15~16.04.1, 4.15.0-1011.13~16.04.1, 4.15.0-1010.12~16.04.1
Ubuntu:22.04:LTSlinux-riscv0, 5.13.0-1004.4, 5.13.0-1006.6+22.04.1
Ubuntu:18.04:LTSlinux-azure4.18.0-1024.25~18.04.1, 4.18.0-1025.27~18.04.1, 4.18.0-1023.24~18.04.1
Ubuntu:18.04:LTSlinux-raspi24.15.0-1038.40, 4.15.0-1037.39, 4.15.0-1036.38
Ubuntu:22.04:LTSlinux-realtime0, 5.15.0-1032.35
Ubuntu:20.04:LTSlinux-azure-fde5.4.0-1069.72+cvm1.1, 5.4.0-1068.71+cvm1.1, 5.4.0-1067.70+cvm1.1
Ubuntu:18.04:LTSlinux-snapdragon4.15.0-1057.62, 4.4.0-1078.83, 4.4.0-1079.84
Ubuntu:18.04:LTSlinux-gcp4.15.0-1026.27, 4.15.0-1037.39, 4.15.0-1036.38
Ubuntu:18.04:LTSlinux-oem4.15.0-1004.5, 4.15.0-1008.11, 4.15.0-1009.12
Ubuntu:18.04:LTSlinux-gke-4.150, 4.15.0-1037.39, 4.15.0-1030.32
Ubuntu:24.04:LTSlinux-raspi-realtime6.8.0-2019.20, 0
Ubuntu:18.04:LTSlinux-hwe-edge5.0.0-15.16~18.04.1, 0, 5.0.0-17.18~18.04.1
Ubuntu:22.04:LTSlinux-intel-iot-realtime5.15.0-1073.75, 0
Ubuntu:Pro:FIPS:18.04:LTSlinux-gcp-fips0, 4.15.0-1001.1
Ubuntu:18.04:LTSlinux-oracle4.15.0-1018.20, 4.15.0-1017.19, 4.15.0-1015.17
Ubuntu:Pro:FIPS-updates:18.04:LTSlinux-azure-fips0, 4.15.0-1002.2
Ubuntu:20.04:LTSlinux-riscv5.4.0-26.30, 5.4.0-40.45, 5.4.0-39.44

…and 11 more

Timeline

References

Open in Interactive Console →