CVE-2019-20636 PUBLISHED

In the Linux kernel before 5.4.12, drivers/input/input.c has out-of-bounds writes via a crafted keycode table, as demonstrated by input_set_keycode, aka CID-cb222aed03d7.

EPSS 0.11% · 29.7th percentile

Risk Scores

EPSS Score
0.11%
29.7th percentile

Affected Products

VendorProductVersions
Ubuntu:20.04:LTSlinux-raspi25.4.0-1004.4, 5.3.0-1017.19, 5.4.0-1006.6
Ubuntu:20.04:LTSlinux-azure-fde5.4.0-1085.90+cvm1.1, 5.4.0-1085.90+cvm2.1, 5.4.0-1089.94+cvm1.2
Ubuntu:22.04:LTSlinux-intel-iot-realtime5.15.0-1073.75, 0
Ubuntu:18.04:LTSlinux-oracle-5.00, 5.0.0-1007.12~18.04.1, 5.0.0-1008.13~18.04.1
Ubuntu:18.04:LTSlinux-oem4.15.0-1013.16, 4.15.0-1030.35, 4.15.0-1028.33
Ubuntu:18.04:LTSlinux-oem-osp10, 5.0.0-1010.11, 5.0.0-1012.13
Ubuntu:Pro:20.04:LTSlinux-azure-fde-5.155.15.0-1070.79~20.04.1.1, 5.15.0-1067.76~20.04.1.1, 5.15.0-1065.74~20.04.1.1
Ubuntu:18.04:LTSlinux-raspi24.15.0-1032.34, 4.15.0-1033.35, 4.15.0-1034.36
Ubuntu:16.04:LTSlinux-aws-hwe4.15.0-1054.56~16.04.1, 4.15.0-1052.54~16.04.1, 4.15.0-1051.53~16.04.1
Ubuntu:16.04:LTSlinux-snapdragon4.4.0-1084.89, 4.4.0-1019.22, 4.4.0-1020.23
Ubuntu:16.04:LTSlinux-gcp4.15.0-1041.43, 4.15.0-1042.44, 4.15.0-1044.46
Ubuntu:Pro:14.04:LTSlinux3.13.0-171.222, 0, 3.11.0-12.19
Ubuntu:Pro:FIPS:18.04:LTSlinux-aws-fips4.15.0-2000.4, 0
Ubuntu:18.04:LTSlinux-gke-4.154.15.0-1042.44, 4.15.0-1044.46, 4.15.0-1045.48
Ubuntu:18.04:LTSlinux-azure4.15.0-1021.21, 4.15.0-1019.19, 4.15.0-1018.18
Ubuntu:18.04:LTSlinux-kvm4.15.0-1026.26, 4.15.0-1053.53, 4.15.0-1052.52
Ubuntu:18.04:LTSlinux-aws4.15.0-1027.27, 4.15.0-1060.62, 4.15.0-1058.60
Ubuntu:18.04:LTSlinux-gcp-5.35.3.0-1008.9~18.04.1, 5.3.0-1012.13~18.04.1, 5.3.0-1009.10~18.04.1
Ubuntu:18.04:LTSlinux-oracle0, 4.15.0-1027.30, 4.15.0-1025.28
Ubuntu:16.04:LTSlinux-oracle4.15.0-1030.33~16.04.1, 4.15.0-1033.36~16.04.1, 4.15.0-1031.34~16.04.1

…and 31 more

Timeline

References

Open in Interactive Console →