CVE-2019-15504 PUBLISHED

drivers/net/wireless/rsi/rsi_91x_usb.c in the Linux kernel through 5.2.9 has a Double Free via crafted USB device traffic (which may be remote via usbip or usbredir).

EPSS 4.12% · 88.5th percentile

Risk Scores

EPSS Score
4.12%
88.5th percentile

Affected Products

VendorProductVersions
Ubuntu:18.04:LTSlinux-hwe-edge0, 5.3.0-24.26~18.04.2, 5.3.0-23.25~18.04.2
Ubuntu:18.04:LTSlinux-oem-osp15.0.0-1010.11, 5.0.0-1024.27, 5.0.0-1022.24
Ubuntu:Pro:14.04:LTSlinux-aws0, 4.4.0-1081.85, 4.4.0-1078.82
Ubuntu:18.04:LTSlinux-hwe5.0.0-31.33~18.04.1, 5.0.0-29.31~18.04.1, 5.0.0-27.28~18.04.1
Ubuntu:18.04:LTSlinux-azure5.0.0-1022.23~18.04.1, 5.0.0-1020.21~18.04.1, 5.0.0-1018.19~18.04.1
Ubuntu:Pro:14.04:LTSlinux-azure4.15.0-1098.109~14.04.1, 0, 4.15.0-1023.24~14.04.1
Ubuntu:18.04:LTSlinux-gke-5.05.0.0-1020.20~18.04.1, 5.0.0-1017.17~18.04.1, 5.0.0-1015.15~18.04.1
Ubuntu:18.04:LTSlinux-gcp4.15.0-1005.5, 4.15.0-1006.6, 4.15.0-1008.8
Ubuntu:Pro:14.04:LTSlinux3.13.0-8.28, 3.13.0-61.100, 3.13.0-59.98
Ubuntu:Pro:14.04:LTSlinux-lts-xenial4.4.0-214.246~14.04.1, 4.4.0-215.247~14.04.1, 4.4.0-218.251~14.04.1

Timeline

References

Open in Interactive Console →