CVE-2018-19824: Use After Free
A flaw was found In the Linux kernel, through version 4.19.6, where a local user could exploit a use-after-free in the ALSA driver by supplying a malicious USB Sound device (with zero interfaces) that is mishandled in usbaudioprobe in sound/usb/card.c. An attacker could corrupt memory and possibly escalate privileges if the attacker is able to have physical access to the system.
Other sources
In the Linux kernel through 4.19.6, a local user could exploit a use-after-free in the ALSA driver by supplying a malicious USB Sound device (with zero interfaces) that is mishandled in usbaudioprobe in sound/usb/card.c.
Affected Software
Remediation
Recommended actions to resolve this vulnerability, in priority order.
- Upgrade
Upgrade
redhat/kernelto a version that resolves this vulnerability.Fixed in 0:3.10.0-1062.el7 - Upgrade
Upgrade
redhat/kernel-rtto a version that resolves this vulnerability.Fixed in 0:4.18.0-80.11.1.rt9.156.el8_0 - Upgrade
Upgrade
redhat/kernelto a version that resolves this vulnerability.Fixed in 0:4.18.0-80.11.1.el8_0 - Upgrade
Upgrade
debian/linuxto a version that resolves this vulnerability.Fixed in 6.1.176-1Fixed in 6.1.187-1Fixed in 6.12.107-1Fixed in 7.1.13-1 - Upgrade
Upgrade
linux kernelto a version that resolves this vulnerability.Fixed in 4.19.6 - Compensating control
Mitigate physical-access risk by preventing untrusted USB devices from being connected to systems (e.g., disable or restrict USB connectivity to the affected hosts, and control USB access/ports).
Event History
Parent advisories
This vulnerability appears in the following advisories.
Frequently Asked Questions
What is the severity of CVE-2018-19824?
CVE-2018-19824 has a medium severity rating due to potential memory corruption by local users.
How do I fix CVE-2018-19824?
To mitigate CVE-2018-19824, update the kernel package to a version higher than 4.19.6 or apply the recommended patches provided by your Linux distribution.
Which Linux versions are affected by CVE-2018-19824?
CVE-2018-19824 affects Linux kernel versions up to and including 4.19.6.
Can CVE-2018-19824 be exploited remotely?
No, CVE-2018-19824 requires local access to exploit the vulnerability through a malicious USB sound device.
What kind of systems are vulnerable to CVE-2018-19824?
Systems running vulnerable versions of the Linux kernel, including Red Hat, Debian, and Ubuntu distributions, are susceptible to CVE-2018-19824.