Description
In the Linux kernel before 5.3.11, sound/core/timer.c has a use-after-free caused by erroneous code refactoring, aka CID-e7af6307a8a5. This is related to snd_timer_open and snd_timer_close_locked. The timeri variable was originally intended to be for a newly created timer instance, but was used for a different purpose after refactoring.
Analysis and contextual insights are available on OpenCVE Cloud.
Remediation
No vendor fix or workaround currently provided.
Additional remediation guidance may be available on OpenCVE Cloud.
Tracking
Sign in to view the affected projects.
Advisories
| Source | ID | Title |
|---|---|---|
EUVD |
EUVD-2019-9405 | In the Linux kernel before 5.3.11, sound/core/timer.c has a use-after-free caused by erroneous code refactoring, aka CID-e7af6307a8a5. This is related to snd_timer_open and snd_timer_close_locked. The timeri variable was originally intended to be for a newly created timer instance, but was used for a different purpose after refactoring. |
Ubuntu USN |
USN-4225-1 | Linux kernel vulnerabilities |
Ubuntu USN |
USN-4227-1 | Linux kernel vulnerabilities |
Ubuntu USN |
USN-4227-2 | Linux kernel (Azure) vulnerabilities |
References
History
No history.
Status: PUBLISHED
Assigner: mitre
Published:
Updated: 2024-08-05T02:25:12.799Z
Reserved: 2019-12-15T00:00:00.000Z
Link: CVE-2019-19807
No data.
Status : Modified
Published: 2019-12-15T23:15:11.023
Modified: 2024-11-21T04:35:26.217
Link: CVE-2019-19807
OpenCVE Enrichment
No data.
Weaknesses
EUVD
Ubuntu USN