UBUNTU-CVE-2019-15217
Dashboard / Vulnerabilities / UBUNTU-CVE-2019-15217
UBUNTU-CVE-2019-15217
Summary:
Details: An issue was discovered in the Linux kernel before 5.2.3. There is a NULL pointer dereference caused by a malicious USB device in the drivers/media/usb/zr364xx/zr364xx.c driver.
References: https://ubuntu.com/security/CVE-2019-15217, https://cdn.kernel.org/pub/linux/kernel/v5.x/ChangeLog-5.2.3, https://git.kernel.org/pub/scm/linux/kernel/git/torvalds/linux.git/commit/?id=5d2e73a5f80a5b5aff3caf1ec6d39b5b3f54b26e, https://syzkaller.appspot.com/bug?id=9c0c178c24d828a7378f483309001329750aad64, https://ubuntu.com/security/notices/USN-4147-1, https://ubuntu.com/security/notices/USN-4286-1, https://ubuntu.com/security/notices/USN-4286-2, https://ubuntu.com/security/notices/USN-4302-1, https://www.cve.org/CVERecord?id=CVE-2019-15217
Affected packages
Package
Name: linux-aws
Purl: pkg:deb/ubuntu/linux-aws?arch=source&distro=trusty%2Fesm
Affected ranges
Type: ECOSYSTEM
Events:
