CVE-2019-19807

Updated: 2023-12-06

CWE: Use After Free

Description:

In the Linux kernel before 5.3.11, sound/core/timer.c has a use-after-free caused by erroneous code refactoring, aka CID-e7af6307a8a5. This is related to snd_timer_open and snd_timer_close_locked. The timeri variable was originally intended to be for a newly created timer instance, but was used for a different purpose after refactoring.

CVSS3: 7.8


Vendor State

OS Vendor version Errata
RHEL 7 3.10.0-1160.el7 RHSA-2020:4060
Ubuntu 18.04 4.15.0-74.84 USN-4227-1
Ubuntu 18.04 AWS 4.15.0-1057.59 USN-4227-1
Ubuntu 16.04 HWE 4.15.0-74.83~16.04.1 USN-4227-1
Ubuntu 16.04 AWS HWE 4.15.0-1057.59~16.04.1 USN-4227-1
CentOS 7 3.10.0-1160.el7 CESA-2020:4060
CentOS 7 plus 3.10.0-1160.el7.centos.plus CESA-2020:4060
Oracle Linux 7 3.10.0-1160.el7 ELSA-2020-4060
Ubuntu 16.04 GCP 4.15.0-1052.56 USN-4227-1
RHEL 8 4.18.0-193.13.2.el8_2 RHSA-2020:3010
Ubuntu 16.04 Azure 4.15.0-1066.71 USN-4227-1
CentOS 8 4.18.0-193.13.2.el8_2 CESA-2020:3010
Oracle Linux 8 4.18.0-193.13.2.el8_2 ELSA-2020-3010
Ubuntu 19.10 5.3.0-26.28 USN-4225-1
Ubuntu 18.04 Azure Eoan 5.3.0-1009.10~18.04.1 USN-4225-1
AlmaLinux 8 4.18.0-193.13.2.el8_2 ALSA-2020:3010

KernelCare State

OS Original kernel version State
RHEL 7
3.10.0-1127.el7 show all hide all
3.10.0-1127.8.2.el7 3.10.0-1127.10.1.el7 3.10.0-1127.13.1.el7 3.10.0-1127.18.2.el7 3.10.0-1127.19.1.el7
Released
Ubuntu 18.04
4.15.0-54.58 show all hide all
4.15.0-42.45 4.15.0-70.79 4.15.0-64.73 4.15.0-52.56 4.15.0-33.36 4.15.0-60.67 4.15.0-44.47 4.15.0-24.26 4.15.0-51.55 4.15.0-36.39 4.15.0-34.37 4.15.0-69.78 4.15.0-39.42 4.15.0-47.50 4.15.0-58.64 4.15.0-65.74 4.15.0-43.46 4.15.0-32.35 4.15.0-46.49 4.15.0-20.21 4.15.0-29.31 4.15.0-31.33 4.15.0-35.38 4.15.0-38.41 4.15.0-45.48 4.15.0-48.51 4.15.0-53.57 4.15.0-56.62 4.15.0-59.66 4.15.0-62.69 4.15.0-63.72 4.15.0-23.25 4.15.0-55.60 4.15.0-50.54 4.15.0-22.24 4.15.0-30.32 4.15.0-66.75
Released
Ubuntu 18.04 AWS
4.15.0-1047.49 show all hide all
4.15.0-1052.54 4.15.0-1027.27 4.15.0-1021.21 4.15.0-1031.33 4.15.0-1032.34 4.15.0-1054.56 4.15.0-1023.23 4.15.0-1029.30 4.15.0-1050.52 4.15.0-1035.37 4.15.0-1034.36 4.15.0-1037.39 4.15.0-1044.46 4.15.0-1048.50 4.15.0-1033.35 4.15.0-1051.53 4.15.0-1041.43 4.15.0-1039.41 4.15.0-1043.45 4.15.0-1045.47 4.15.0-1040.42
Released
Ubuntu 16.04 HWE
4.15.0-65.74~16.04.1 show all hide all
4.15.0-64.73~16.04.1 4.15.0-24.26~16.04.1 4.15.0-34.37~16.04.1 4.15.0-47.50~16.04.1 4.15.0-39.42~16.04.1 4.15.0-42.45~16.04.1 4.15.0-46.49~16.04.1 4.15.0-58.64~16.04.1 4.15.0-69.78~16.04.1 4.15.0-33.36~16.04.1 4.15.0-45.48~16.04.1 4.15.0-30.32~16.04.1 4.15.0-60.67~16.04.1 4.15.0-36.39~16.04.1 4.15.0-55.60~16.04.2 4.15.0-50.54~16.04.1 4.15.0-52.56~16.04.1 4.15.0-66.75~16.04.1 4.15.0-51.55~16.04.1 4.15.0-54.58~16.04.1 4.15.0-29.31~16.04.1 4.15.0-35.38~16.04.1 4.15.0-38.41~16.04.1 4.15.0-48.51~16.04.1 4.15.0-59.66~16.04.1 4.15.0-62.69~16.04.1 4.15.0-70.79~16.04.1 4.15.0-32.35~16.04.1 4.15.0-43.46~16.04.1
Released
Ubuntu 16.04 AWS HWE
4.15.0-1051.53~16.04.1 show all hide all
4.15.0-1050.52~16.04.1 4.15.0-1039.41~16.04.1 4.15.0-1054.56~16.04.1 4.15.0-1041.43~16.04.1 4.15.0-1033.35~16.04.1 4.15.0-1040.42~16.04.1 4.15.0-1032.34~16.04.1 4.15.0-1030.31~16.04.1 4.15.0-1036.38~16.04.1 4.15.0-1044.46~16.04.1 4.15.0-1048.50~16.04.1 4.15.0-1047.49~16.04.1 4.15.0-1035.37~16.04.1 4.15.0-1031.33~16.04.1 4.15.0-1045.47~16.04.1 4.15.0-1052.54~16.04.1 4.15.0-1043.45~16.04.1
Released
CentOS 7
3.10.0-1127.18.2.el7 show all hide all
3.10.0-1127.8.2.el7 3.10.0-1127.el7 3.10.0-1127.10.1.el7 3.10.0-1127.19.1.el7 3.10.0-1127.13.1.el7
Released
CentOS 7 plus
3.10.0-1127.el7.centos.plus show all hide all
3.10.0-1127.8.2.el7.centos.plus 3.10.0-1127.13.1.el7.centos.plus 3.10.0-1127.18.2.el7.centos.plus 3.10.0-1127.10.1.el7.centos.plus 3.10.0-1127.19.1.el7.centos.plus
Released
Oracle Linux 7
3.10.0-1127.el7 show all hide all
3.10.0-1127.8.2.el7 3.10.0-1127.13.1.el7 3.10.0-1127.18.2.el7 3.10.0-1127.10.1.el7 3.10.0-1127.19.1.el7 3.10.0-1127.13.1.0.1.el7 3.10.0-1127.19.1.0.2.el7
Released
Proxmox VE 5
4.15.18-11-pve_4.15.18-33 show all hide all
4.15.18-6-pve_4.15.18-25 4.15.18-23-pve_4.15.18-51 4.15.18-8-pve_4.15.18-28 4.15.18-1-pve_4.15.18-15 4.15.18-2-pve_4.15.18-20 4.15.18-18-pve_4.15.18-44 4.15.18-16-pve_4.15.18-41 4.15.17-3-pve_4.15.17-12 4.15.18-10-pve_4.15.18-32 4.15.18-12-pve_4.15.18-35 4.15.18-21-pve_4.15.18-48 4.15.18-14-pve-4.15.18-38 4.15.18-7-pve-4.15.18-27 4.15.10-1-pve_4.15.10-4 4.15.15-1-pve_4.15.15-6 4.15.17-1-pve_4.15.17-9 4.15.17-2-pve_4.15.17-10 4.15.18-1-pve_4.15.18-16 4.15.18-1-pve_4.15.18-17 4.15.18-1-pve_4.15.18-19 4.15.18-10-pve_4.15.18-31 4.15.18-11-pve_4.15.18-34 4.15.18-13-pve_4.15.18-37 4.15.18-17-pve_4.15.18-42 4.15.18-17-pve_4.15.18-43 4.15.18-19-pve_4.15.18-45 4.15.18-2-pve_4.15.18-21 4.15.18-22-pve_4.15.18-50 4.15.18-4-pve_4.15.18-23 4.15.18-7-pve_4.15.18-26 4.15.18-9-pve_4.15.18-30 4.15.3-1-pve_4.15.3-1 4.15.18-14-pve_4.15.18-39 4.15.18-22-pve_4.15.18-49 4.15.18-20-pve_4.15.18-46 4.15.18-15-pve_4.15.18-40 4.15.18-3-pve_4.15.18-22 4.15.18-21-pve_4.15.18-47 4.15.18-5-pve_4.15.18-24
Released
Ubuntu 16.04 GCP
4.15.0-1032.34~16.04.1 show all hide all
4.15.0-1024.25~16.04.2 4.15.0-1040.42~16.04.1 4.15.0-1021.22~16.04.1 4.15.0-1019.20~16.04.1 4.15.0-1036.38~16.04.1 4.15.0-1017.18~16.04.1 4.15.0-1018.19~16.04.2 4.15.0-1029.31~16.04.1 4.15.0-1028.29~16.04.1 4.15.0-1033.35~16.04.1 4.15.0-1014.14~16.04.1 4.15.0-1026.27~16.04.1 4.15.0-1025.26~16.04.1 4.15.0-1034.36~16.04.1 4.15.0-1027.28~16.04.1 4.15.0-1015.15~16.04.1 4.15.0-1037.39~16.04.1
Released
CentOS 6 alt
4.9.199-35.el6
Released
CentOS 7 alt
4.9.199-35.el7
Released
RHEL 8
4.18.0-107.el8 show all hide all
4.18.0-193.1.2.el8_2 4.18.0-193.el8 4.18.0-147.0.2.el8_1 4.18.0-147.0.3.el8_1 4.18.0-147.5.1.el8_1 4.18.0-147.el8 4.18.0-193.6.3.el8_2 4.18.0-147.3.1.el8_1 4.18.0-147.8.1.el8_1
Released
Proofpoint
Ready For Release
OEL 7 Dell
Ready For Release
OEL 8 Dell
Ready For Release
Ubuntu 16.04 Azure
4.15.0-1041.45 show all hide all
4.15.0-1060.65 4.15.0-1051.56 4.15.0-1036.38~16.04.1 4.15.0-1061.66 4.15.0-1025.26~16.04.1 4.15.0-1056.61 4.15.0-1049.54 4.15.0-1037.39~16.04.1 4.15.0-1019.19~16.04.1 4.15.0-1023.24~16.04.1 4.15.0-1014.14~16.04.1 4.15.0-1022.22~16.04.1 4.15.0-1047.51 4.15.0-1055.60 4.15.0-1035.36~16.04.1 4.15.0-1059.64 4.15.0-1063.68 4.15.0-1045.49 4.15.0-1021.21~16.04.1 4.15.0-1031.32~16.04.1 4.15.0-1040.44 4.15.0-1018.18~16.04.1 4.15.0-1028.29~16.04.1 4.15.0-1030.31~16.04.1 4.15.0-1032.33~16.04.1 4.15.0-1039.43 4.15.0-1042.46 4.15.0-1050.55 4.15.0-1052.57 4.15.0-1057.62 4.15.0-1013.13~16.04.2 4.15.0-1046.50
Released
CentOS 8
4.18.0-193.1.2.el8_2 show all hide all
4.18.0-147.8.1.el8_1 4.18.0-147.5.1.el8_1 4.18.0-147.el8 4.18.0-147.3.1.el8_1 4.18.0-147.0.3.el8_1 4.18.0-193.el8 4.18.0-193.6.3.el8_2
Released
Oracle Linux 8
4.18.0-147.8.1.el8_1 show all hide all
4.18.0-193.el8 4.18.0-147.0.2.el8_1 4.18.0-193.1.2.el8_2 4.18.0-193.6.3.el8_2 4.18.0-147.5.1.el8_1 4.18.0-147.3.1.el8_1 4.18.0-147.0.3.el8_1 4.18.0-147.el8
Released
CloudLinux OS 8
4.18.0-147.8.1.el8.lve show all hide all
4.18.0-147.0.3.lve.el8 4.18.0-147.3.1.el8.lve.1 4.18.0-147.8.1.el8.lve.1
Released
CloudLinux OS 7h
4.18.0-147.3.1.el7h.lve.1 show all hide all
4.18.0-147.0.3.el7h.lve 4.18.0-147.0.3.el7h 4.18.0-147.8.1.el7h.lve 4.18.0-147.8.1.el7h.lve.1
Released
Debian 9 backports
Ready For Release
Ubuntu 19.10
Will Not Fix
Ubuntu 18.04 Azure Eoan
Will Not Fix
AlmaLinux 8
Ready For Release