CVE-2019-18814 PUBLISHED

An issue was discovered in the Linux kernel through 5.3.9. There is a use-after-free when aa_label_parse() fails in aa_audit_rule_init() in security/apparmor/audit.c.

EPSS 0.50% · 66.0th percentile

Risk Scores

EPSS Score
0.50%
66.0th percentile

Affected Products

VendorProductVersions
Ubuntu:Pro:14.04:LTSlinux-lts-xenial0, 4.4.0-75.96~14.04.1, 4.4.0-72.93~14.04.1
Ubuntu:Pro:14.04:LTSlinux-aws4.4.0-1099.104, 4.4.0-1066.70, 4.4.0-1067.71
Ubuntu:16.04:LTSlinux-hwe-edge4.15.0-22.24~16.04.1, 4.15.0-20.21~16.04.1, 4.15.0-15.16~16.04.1
Ubuntu:Pro:14.04:LTSlinux-azure4.15.0-1193.208~14.04.1, 0, 4.15.0-1023.24~14.04.1
Ubuntu:18.04:LTSlinux-azure-edge5.0.0-1012.12~18.04.2, 0, 4.18.0-1006.6~18.04.1
Ubuntu:18.04:LTSlinux-hwe0, 4.18.0-25.26~18.04.1, 4.18.0-24.25~18.04.1
Ubuntu:18.04:LTSlinux-gcp-edge5.0.0-1011.11~18.04.1, 5.0.0-1013.13~18.04.1, 4.18.0-1009.10~18.04.1
Ubuntu:Pro:14.04:LTSlinux3.13.0-181.232, 3.13.0-180.231, 3.13.0-176.227
Ubuntu:18.04:LTSlinux-azure4.18.0-1024.25~18.04.1, 4.18.0-1025.27~18.04.1, 4.18.0-1020.20~18.04.1

Timeline

References

Open in Interactive Console →