VDB
CVE-2019-15213
CVE-2019-15213
PUBLISHED
An issue was discovered in the Linux kernel before 5.2.3. There is a use-after-free caused by a malicious USB device in the drivers/media/usb/dvb-usb/dvb-usb-init.c driver.
EPSS 0.17% · 38.5th percentile
Risk Scores
EPSS Score
0.17%
38.5th percentile
Affected Products
| Vendor | Product | Versions |
|---|---|---|
| Ubuntu:Pro:18.04:LTS | linux-ibm-5.4 | 0, 5.4.0-1033.37~18.04.1, 5.4.0-1032.36~18.04.1 |
| Ubuntu:Pro:FIPS-updates:18.04:LTS | linux-aws-fips | 4.15.0-2090.96, 4.15.0-2052.54, 4.15.0-2085.91 |
| Ubuntu:Pro:Realtime:22.04:LTS | linux-realtime | 5.15.0-1033.36, 5.15.0-1007.7, 5.15.0-1029.32 |
| Ubuntu:16.04:LTS | linux-hwe-edge | 4.11.0-14.20~16.04.1, 4.8.0-34.36~16.04.1, 4.10.0-14.16~16.04.1 |
| Ubuntu:20.04:LTS | linux-oracle-5.11 | 5.11.0-1021.22~20.04.1, 5.11.0-1013.14~20.04.1, 5.11.0-1008.8~20.04.1 |
| Ubuntu:Pro:FIPS-updates:22.04:LTS | linux-azure-fips | 5.15.0-1085.94+fips1, 5.15.0-1087.96+fips1, 5.15.0-1088.97+fips1 |
| Ubuntu:Pro:18.04:LTS | linux-kvm | 4.15.0-1127.132, 4.15.0-1126.131, 4.15.0-1125.130 |
| Ubuntu:Pro:16.04:LTS | linux-oracle | *, *, * |
| Ubuntu:Pro:FIPS-updates:20.04:LTS | linux-fips | 5.4.0-1057.65, 5.4.0-1060.68, 5.4.0-1061.69 |
| Ubuntu:22.04:LTS | linux-azure-6.2 | *, *, * |
| Ubuntu:Pro:18.04:LTS | linux-azure-5.4 | *, *, * |
| Ubuntu:Pro:FIPS-updates:20.04:LTS | linux-gcp-fips | 5.4.0-1147.156+fips1, 5.4.0-1148.157+fips1, 5.4.0-1150.159+fips1 |
| Ubuntu:Pro:20.04:LTS | linux-riscv-5.15 | *, *, 5.15.0-1033.37~20.04.1 |
| Ubuntu:Pro:20.04:LTS | linux-aws-5.15 | 5.15.0-1015.19~20.04.1, 5.15.0-1014.18~20.04.1, 5.15.0-1017.21~20.04.1 |
| Ubuntu:24.04:LTS | linux-azure-nvidia-6.14 | 6.14.0-1006.6, 6.14.0-1003.3, 6.14.0-1007.7 |
| Ubuntu:Pro:20.04:LTS | linux-oracle | 5.4.0-1045.49, 5.4.0-1140.150, 5.4.0-1141.151 |
| Ubuntu:20.04:LTS | linux-gke | 5.4.0-1091.98, 5.4.0-1067.70, 5.4.0-1056.59 |
| Ubuntu:24.04:LTS | linux-raspi-realtime | 0, 6.8.0-2019.20 |
| Ubuntu:24.04:LTS | linux-nvidia-lowlatency | 6.8.0-1014.15.1, 6.8.0-1031.34.1, 6.8.0-1032.35.1 |
| Ubuntu:Pro:20.04:LTS | linux-hwe-5.15 | 5.15.0-131.141~20.04.1, 5.15.0-121.131~20.04.1, 5.15.0-119.129~20.04.1 |
…and 210 more
Exploit Intelligence
Timeline
- Aug 19, 2019 CVE Published
- Apr 14, 2021 EPSS Score
- Jun 23, 2021 EPSS Score
- Aug 24, 2021 EPSS Score
- Oct 26, 2021 EPSS Score
- Jan 6, 2022 EPSS Score
- Feb 4, 2022 EPSS Score
- Feb 28, 2022 EPSS Score
- Apr 1, 2022 EPSS Score
- May 1, 2022 EPSS Score
- Jul 3, 2022 EPSS Score
- Sep 4, 2022 EPSS Score
References
- https://ubuntu.com/security/CVE-2019-15213 third-party-advisory
- https://cdn.kernel.org/pub/linux/kernel/v5.x/ChangeLog-5.2.3 third-party-advisory
- https://git.kernel.org/pub/scm/linux/kernel/git/torvalds/linux.git/commit/?id=6cf97230cd5f36b7665099083272595c55d72be7 third-party-advisory
- https://syzkaller.appspot.com/bug?id=a53c9c9dd2981bfdbfbcbc1ddbd35595eda8bced third-party-advisory
- https://lore.kernel.org/linux-media/fe983331d14442a96db3f71066ca0488a8921840.camel@decadent.org.uk/ third-party-advisory
- https://www.cve.org/CVERecord?id=CVE-2019-15213 third-party-advisory