Lucene search

K
redhatcveRedhat.comRH:CVE-2019-19807
HistoryDec 23, 2019 - 11:08 a.m.

CVE-2019-19807

2019-12-2311:08:45
redhat.com
access.redhat.com
20

0.001 Low

EPSS

Percentile

40.5%

A memory flaw was found in the ALSA subsystem of the Linux kernel. The struct snd_timer_instance function fails the timer->max_instances check leading to an invalid address. This could lead to a use-after-free vulnerability.

Mitigation

Red Hat has investigated whether a possible mitigation exists for this issue, and has not been able to identify a practical example. Please update as soon as possible.