CVE-2019-15214: Use After Free
An issue was discovered in the Linux kernel before 5.0.10. There is a use-after-free in the sound subsystem because card disconnection causes certain data structures to be deleted too early. This is related to sound/core/init.c and sound/core/info.c.
Affected Software
Remediation
Event History
Frequently Asked Questions
What is the severity of CVE-2019-15214?
CVE-2019-15214 is classified as a high severity vulnerability due to the risk of a use-after-free condition in the Linux kernel sound subsystem.
What software versions are affected by CVE-2019-15214?
CVE-2019-15214 affects Linux kernel versions prior to 5.0.10, as well as specific versions of Google Android and Ubuntu Linux.
How do I fix CVE-2019-15214?
To fix CVE-2019-15214, update the Linux kernel to version 5.0.10 or later, or apply the necessary patches provided by your distribution.
What type of vulnerability is CVE-2019-15214?
CVE-2019-15214 is a use-after-free vulnerability that occurs in the sound subsystem of the Linux kernel.
Is there a known exploit for CVE-2019-15214?
As of now, there are no publicly known exploits specifically targeted at CVE-2019-15214.