CVE-2019-9454 PUBLISHED

In the Android kernel in i2c driver there is a possible out of bounds write due to memory corruption. This could lead to local escalation of privilege with System execution privileges needed. User interaction is not needed for exploitation.

EPSS 0.02% · 5.6th percentile

Risk Scores

EPSS Score
0.02%
5.6th percentile

Affected Products

VendorProductVersions
Ubuntu:16.04:LTSlinux-azure4.11.0-1013.13, 4.11.0-1011.11, 4.11.0-1009.9
Ubuntu:24.04:LTSlinux-hwe-6.116.11.0-26.26~24.04.1, 6.11.0-29.29~24.04.1, 6.11.0-28.28~24.04.1
Ubuntu:24.04:LTSlinux-azure-6.116.11.0-1017.17~24.04.1, 6.11.0-1018.18~24.04.1, 0
Ubuntu:16.04:LTSlinux-kvm4.4.0-1012.17, 4.4.0-1038.44, 4.4.0-1037.43
Ubuntu:18.04:LTSlinux-azure-edge5.0.0-1012.12~18.04.2, 4.18.0-1008.8~18.04.1, 4.18.0-1006.6~18.04.1
Ubuntu:16.04:LTSlinux-hwe4.8.0-39.42~16.04.1, 4.8.0-36.36~16.04.1, 0
Ubuntu:18.04:LTSlinux-snapdragon0, 4.4.0-1077.82, 4.4.0-1078.83
Ubuntu:24.04:LTSlinux-lowlatency-hwe-6.116.11.0-1009.10~24.04.1, 6.11.0-1015.16~24.04.2, 6.11.0-1016.17~24.04.1
Ubuntu:18.04:LTSlinux-gcp4.15.0-1044.70, 5.0.0-1020.20~18.04.1, 5.0.0-1021.21~18.04.1
Ubuntu:22.04:LTSlinux-intel-iot-realtime0, 5.15.0-1073.75
Ubuntu:20.04:LTSlinux-raspi25.3.0-1007.8, 5.3.0-1017.19, 5.4.0-1004.4
Ubuntu:Pro:FIPS:16.04:LTSlinux-fips4.4.0-1006.6, 4.4.0-1005.5, 4.4.0-1003.3
Ubuntu:Pro:14.04:LTSlinux3.13.0-194.245, 3.13.0-195.246, 3.13.0-196.247
Ubuntu:16.04:LTSlinux-hwe-edge0, 4.8.0-28.30~16.04.1, 4.8.0-30.32~16.04.1
Ubuntu:16.04:LTSlinux-snapdragon4.4.0-1012.12, 4.4.0-1113.118, 4.4.0-1111.116
Ubuntu:18.04:LTSlinux-gcp-edge4.18.0-1008.9~18.04.1, 4.18.0-1009.10~18.04.1, 4.18.0-1011.12~18.04.1
Ubuntu:16.04:LTSlinux4.4.0-89.112, 4.4.0-87.110, 4.4.0-83.106
Ubuntu:24.04:LTSlinux-raspi-realtime6.8.0-2019.20, 0
Ubuntu:20.04:LTSlinux-gke5.4.0-1081.87, 0, 5.4.0-1033.35
Ubuntu:16.04:LTSlinux-aws0, 4.4.0-1001.10, 4.4.0-1003.12

…and 12 more

Timeline

References

Open in Interactive Console →