imPC@ndo IT

Tracker / CVE-2019-19527

CVE-2019-19527

Medium 6.8

In the Linux kernel before 5.2.10, there is a use-after-free bug that can be caused by a malicious USB device in the drivers/hid/usbhid/hiddev.c driver, aka CID-9c09b214f30e.

Affected products and versions

debian debian_linux
linux linux_kernel · 2.6.30 → 3.16.79
linux linux_kernel · 3.17 → 4.4.190
linux linux_kernel · 4.10 → 4.14.140
linux linux_kernel · 4.15 → 4.19.68
linux linux_kernel · 4.20 → 5.2.10
linux linux_kernel · 4.5 → 4.9.190
opensuse leap

Analysis

This page is not indexable yet.Until it carries original analysis — what it actually exposes, how to check in two minutes whether a system was touched, what to do if it was — the page stays noindex. The database decides that, not the template.

References