CVE-2019-19529 PUBLISHED

In the Linux kernel before 5.3.11, there is a use-after-free bug that can be caused by a malicious USB device in the drivers/net/can/usb/mcba_usb.c driver, aka CID-4d6636498c41.

EPSS 0.06% · 17.9th percentile

Risk Scores

EPSS Score
0.06%
17.9th percentile

Affected Products

VendorProductVersions
Ubuntu:20.04:LTSlinux-raspi25.4.0-1006.6, 0, 5.3.0-1007.8
Ubuntu:18.04:LTSlinux-raspi24.15.0-1036.38, 4.15.0-1037.39, 4.15.0-1038.40
Ubuntu:18.04:LTSlinux4.15.0-62.69, 0, 4.13.0-16.19
Ubuntu:18.04:LTSlinux-azure-edge4.18.0-1006.6~18.04.1, 4.18.0-1007.7~18.04.1, 5.0.0-1012.12~18.04.2
Ubuntu:20.04:LTSlinux-riscv5.4.0-27.31, 5.4.0-26.30, 5.4.0-34.38
Ubuntu:18.04:LTSlinux-oem-osp15.0.0-1024.27, 5.0.0-1025.28, 5.0.0-1027.31
Ubuntu:16.04:LTSlinux-aws-hwe4.15.0-1045.47~16.04.1, 4.15.0-1052.54~16.04.1, 4.15.0-1051.53~16.04.1
Ubuntu:Pro:FIPS:18.04:LTSlinux-azure-fips0, 4.15.0-1002.2
Ubuntu:Pro:14.04:LTSlinux-azure4.15.0-1059.64~14.04.1, 4.15.0-1057.62~14.04.1, 4.15.0-1056.61~14.04.1
Ubuntu:18.04:LTSlinux-hwe-edge5.0.0-20.21~18.04.1, 5.0.0-19.20~18.04.1, 0
Ubuntu:18.04:LTSlinux-gke-4.154.15.0-1032.34, 4.15.0-1030.32, 0
Ubuntu:20.04:LTSlinux-gke5.4.0-1066.69, 5.4.0-1067.70, 5.4.0-1068.71
Ubuntu:18.04:LTSlinux-oem4.15.0-1063.72, 4.15.0-1057.66, 4.15.0-1056.65
Ubuntu:18.04:LTSlinux-oracle4.15.0-1014.16, 0, 4.15.0-1007.9
Ubuntu:Pro:FIPS:18.04:LTSlinux-gcp-fips0, 4.15.0-1001.1
Ubuntu:18.04:LTSlinux-aws-5.05.0.0-1022.25~18.04.1, 0, 5.0.0-1021.24~18.04.1
Ubuntu:16.04:LTSlinux-oracle4.15.0-1013.15~16.04.1, 4.15.0-1011.13~16.04.1, 4.15.0-1010.12~16.04.1
Ubuntu:Pro:FIPS:18.04:LTSlinux-aws-fips0, 4.15.0-2000.4
Ubuntu:20.04:LTSlinux-azure-fde5.4.0-1095.101+cvm1.1, 5.4.0-1098.104+cvm1.1, 5.4.0-1100.106+cvm1.1
Ubuntu:Pro:FIPS-updates:18.04:LTSlinux-azure-fips4.15.0-1002.2, 0

…and 20 more

Timeline

References

Open in Interactive Console →