cbcvebase.
CVE-2018-19985
published 2019-03-21

CVE-2018-19985: The function hso_get_config_data in drivers/net/usb/hso.c in the Linux kernel through 4.19.8 reads if_num from the USB device (as a u8) and uses it to index a…

PriorityP420medium4.6CVSS 3.0
AVPACLPRNUINSUCHINAN
EPSS
0.96%
58.2th percentile
The function hso_get_config_data in drivers/net/usb/hso.c in the Linux kernel through 4.19.8 reads if_num from the USB device (as a u8) and uses it to index a small array, resulting in an object out-of-bounds (OOB) read that potentially allows arbitrary read in the kernel address space.

Affected

10 ranges
VendorProductVersion rangeFixed in
debiandebian_linux
debianlinux< linux 4.19.13-1 (bookworm)linux 4.19.13-1 (bookworm)
linuxlinux_kernel<= 4.19.8
linuxlinux_kernel>= 0 < 4.19.13-14.19.13-1
linuxlinux_kernel>= 0 < 4.19.13-14.19.13-1
linuxlinux_kernel>= 0 < 4.19.13-14.19.13-1
linuxlinux_kernel>= 0 < 4.19.13-14.19.13-1
linuxlinux_kernel>= 0 < 4.4.0-143.1694.4.0-143.169
linuxlinux_kernel>= 0 < 4.15.0-62.694.15.0-62.69
linuxlinux_kernel>= 0 < 4.15.0-60.674.15.0-60.67

CVSS provenance

nvdv3.04.6MEDIUMCVSS:3.0/AV:P/AC:L/PR:N/UI:N/S:U/C:H/I:N/A:N
nvdv2.02.1LOWAV:L/AC:L/Au:N/C:P/I:N/A:N
osv5.5MEDIUM
vendor_ubuntu5.5MEDIUM
vendor_debian4.6MEDIUM
vendor_redhat4.6MEDIUM
Stop checking back — get the weekly exploitation signal.

Every Monday: what got weaponized or added to CISA KEV in the last seven days — each CVE cross-linked to its PoC, Nuclei template, and detection rule. Free, one email a week, unsubscribe in one click.