CVE-2019-15213: Use After Free
Published Aug 19, 2019
·Updated
An issue was discovered in the Linux kernel before 5.2.3. There is a use-after-free caused by a malicious USB device in the drivers/media/usb/dvb-usb/dvb-usb-init.c driver.
Affected Software
10 affected components
Linux Linux kernel<5.2.3
NetApp Baseboard Management Controller H410c Firmware
NetApp Baseboard Management Controller H410c
NetApp Active Iq Unified Manager Vmware Vsphere
NetApp Data Availability Services
NetApp Solidfire \& Hci Management Node
NetApp Solidfire Baseboard Management Controller
openSUSE Leap=15.1
All of the following
NetApp H410c Firmware
NetApp H410c
Remediation
Event History
Aug 19, 2019
CVE Published
via MITRE·09:47 PM
Data Sourced
via MITRE·09:47 PM
Description
Data Sourced
via NVD·10:15 PM
RemedyDescriptionSeverityWeaknessAffected Software
Frequently Asked Questions
1
What is CVE-2019-15213?
CVE-2019-15213 is a vulnerability in the Linux kernel before version 5.2.3 that allows a use-after-free caused by a malicious USB device in the drivers/media/usb/dvb-usb/dvb-usb-init.c driver.
2
What software is affected by CVE-2019-15213?
The Linux kernel before version 5.2.3 is affected by CVE-2019-15213.
3
What is the severity of CVE-2019-15213?
The severity of CVE-2019-15213 is medium with a CVSS score of 4.6.
4
How can I fix CVE-2019-15213?
To fix CVE-2019-15213, update your Linux kernel to version 5.2.3 or later.
5
Where can I find more information about CVE-2019-15213?
More information about CVE-2019-15213 can be found at the following references: [1], [2], [3].