CVE-2019-19947 PUBLISHED

In the Linux kernel through 5.4.6, there are information leaks of uninitialized memory to a USB device in the drivers/net/can/usb/kvaser_usb/kvaser_usb_leaf.c driver, aka CID-da2311a6385c.

EPSS 0.11% · 29.0th percentile

Risk Scores

EPSS Score
0.11%
29.0th percentile

Affected Products

VendorProductVersions
Ubuntu:18.04:LTSlinux-gcp-4.154.15.0-1080.90, 4.15.0-1078.88, 4.15.0-1077.87
Ubuntu:24.04:LTSlinux-raspi-realtime0, 6.8.0-2019.20
Ubuntu:16.04:LTSlinux4.4.0-134.160, 4.4.0-122.146, 4.4.0-124.148
Ubuntu:18.04:LTSlinux-oracle-5.05.0.0-1010.15~18.04.1, 0, 5.0.0-1007.12~18.04.1
Ubuntu:18.04:LTSlinux-hwe-edge5.3.0-23.25~18.04.1, 5.3.0-23.25~18.04.2, 5.3.0-24.26~18.04.2
Ubuntu:22.04:LTSlinux-riscv5.15.0-1026.30, 5.15.0-1023.27, 5.15.0-1022.26
Ubuntu:18.04:LTSlinux-azure4.15.0-1032.33, 4.15.0-1022.23, 4.15.0-1023.24
Ubuntu:18.04:LTSlinux-gcp-5.35.3.0-1008.9~18.04.1, 5.3.0-1009.10~18.04.1, 5.3.0-1010.11~18.04.1
Ubuntu:Pro:FIPS:18.04:LTSlinux-gcp-fips0, 4.15.0-1001.1
Ubuntu:16.04:LTSlinux-azure4.13.0-1018.21, 4.15.0-1092.102~16.04.1, 4.15.0-1091.101~16.04.1
Ubuntu:18.04:LTSlinux-oem-osp10, 5.0.0-1010.11, 5.0.0-1012.13
Ubuntu:18.04:LTSlinux-gke-5.30, 5.3.0-1011.12~18.04.1
Ubuntu:18.04:LTSlinux-azure-edge5.0.0-1012.12~18.04.2, 4.18.0-1007.7~18.04.1, 4.18.0-1006.6~18.04.1
Ubuntu:18.04:LTSlinux-kvm4.15.0-1021.21, 4.15.0-1020.20, 4.15.0-1019.19
Ubuntu:18.04:LTSlinux-raspi24.15.0-1009.10, 4.15.0-1010.11, 4.15.0-1011.12
Ubuntu:16.04:LTSlinux-hwe4.15.0-50.54~16.04.1, 4.15.0-52.56~16.04.1, 4.15.0-54.58~16.04.1
Ubuntu:18.04:LTSlinux-azure-5.35.3.0-1008.9~18.04.1, 0, 5.3.0-1009.10~18.04.1
Ubuntu:22.04:LTSlinux-intel-iot-realtime5.15.0-1073.75, 0
Ubuntu:16.04:LTSlinux-hwe-edge4.8.0-30.32~16.04.1, 4.8.0-32.34~16.04.1, 4.8.0-34.36~16.04.1
Ubuntu:16.04:LTSlinux-kvm4.4.0-1015.20, 4.4.0-1013.18, 4.4.0-1012.17

…and 33 more

Timeline

References

Open in Interactive Console →