CVE-2019-15217
- EPSS 0.06%
- Veröffentlicht 19.08.2019 22:15:11
- Zuletzt bearbeitet 21.11.2024 04:28:12
An issue was discovered in the Linux kernel before 5.2.3. There is a NULL pointer dereference caused by a malicious USB device in the drivers/media/usb/zr364xx/zr364xx.c driver.
CVE-2019-15218
- EPSS 0.1%
- Veröffentlicht 19.08.2019 22:15:11
- Zuletzt bearbeitet 21.11.2024 04:28:13
An issue was discovered in the Linux kernel before 5.1.8. There is a NULL pointer dereference caused by a malicious USB device in the drivers/media/usb/siano/smsusb.c driver.
CVE-2019-15219
- EPSS 0.11%
- Veröffentlicht 19.08.2019 22:15:11
- Zuletzt bearbeitet 21.11.2024 04:28:13
An issue was discovered in the Linux kernel before 5.1.8. There is a NULL pointer dereference caused by a malicious USB device in the drivers/usb/misc/sisusbvga/sisusb.c driver.
CVE-2019-15220
- EPSS 0.04%
- Veröffentlicht 19.08.2019 22:15:11
- Zuletzt bearbeitet 21.11.2024 04:28:13
An issue was discovered in the Linux kernel before 5.2.1. There is a use-after-free caused by a malicious USB device in the drivers/net/wireless/intersil/p54/p54usb.c driver.
CVE-2019-15221
- EPSS 0.15%
- Veröffentlicht 19.08.2019 22:15:11
- Zuletzt bearbeitet 21.11.2024 04:28:13
An issue was discovered in the Linux kernel before 5.1.17. There is a NULL pointer dereference caused by a malicious USB device in the sound/usb/line6/pcm.c driver.
CVE-2019-15222
- EPSS 0.07%
- Veröffentlicht 19.08.2019 22:15:11
- Zuletzt bearbeitet 21.11.2024 04:28:13
An issue was discovered in the Linux kernel before 5.2.8. There is a NULL pointer dereference caused by a malicious USB device in the sound/usb/helper.c (motu_microbookii) driver.
CVE-2019-15118
- EPSS 0.13%
- Veröffentlicht 16.08.2019 14:15:10
- Zuletzt bearbeitet 21.11.2024 04:28:05
check_input_term in sound/usb/mixer.c in the Linux kernel through 5.2.9 mishandles recursion, leading to kernel stack exhaustion.
CVE-2019-15098
- EPSS 0.16%
- Veröffentlicht 16.08.2019 02:15:11
- Zuletzt bearbeitet 21.11.2024 04:28:02
drivers/net/wireless/ath/ath6kl/usb.c in the Linux kernel through 5.2.9 has a NULL pointer dereference via an incomplete address in an endpoint descriptor.
CVE-2019-14379
- EPSS 1.8%
- Veröffentlicht 29.07.2019 12:15:16
- Zuletzt bearbeitet 21.11.2024 04:26:37
SubTypeValidator.java in FasterXML jackson-databind before 2.9.9.2 mishandles default typing when ehcache is used (because of net.sf.ehcache.transaction.manager.DefaultTransactionManagerLookup), leading to remote code execution.
CVE-2019-13990
- EPSS 7.95%
- Veröffentlicht 26.07.2019 19:15:11
- Zuletzt bearbeitet 21.11.2024 04:25:50
initDocumentParser in xml/XMLSchedulingDataProcessor.java in Terracotta Quartz Scheduler through 2.3.0 allows XXE attacks via a job description.