CVE-2019-15920 PUBLISHED

An issue was discovered in the Linux kernel before 5.0.10. SMB2_read in fs/cifs/smb2pdu.c has a use-after-free. NOTE: this was not fixed correctly in 5.0.10; see the 5.0.11 ChangeLog, which documents a memory leak.

EPSS 0.55% · 67.7th percentile

Risk Scores

EPSS Score
0.55%
67.7th percentile

Affected Products

VendorProductVersions
Ubuntu:18.04:LTSlinux-hwe0, 4.18.0-13.14~18.04.1, 4.18.0-14.15~18.04.1
Ubuntu:18.04:LTSlinux-oem-osp10, 5.0.0-1010.11, 5.0.0-1012.13
Ubuntu:18.04:LTSlinux-hwe-edge0, 5.0.0-15.16~18.04.1, 5.0.0-16.17~18.04.1
Ubuntu:18.04:LTSlinux-azure4.18.0-1019.19~18.04.1, 4.18.0-1020.20~18.04.1, 0

Timeline

References

Open in Interactive Console →