cbcvebase.
CVE-2019-19448
published 2019-12-08

CVE-2019-19448: In the Linux kernel 5.0.21 and 5.3.11, mounting a crafted btrfs filesystem image, performing some operations, and then making a syncfs system call can lead to…

PriorityP338high7.8CVSS 3.1
AVLACLPRNUIRSUCHIHAH
EPSS
2.14%
80.2th percentile
In the Linux kernel 5.0.21 and 5.3.11, mounting a crafted btrfs filesystem image, performing some operations, and then making a syncfs system call can lead to a use-after-free in try_merge_free_space in fs/btrfs/free-space-cache.c because the pointer to a left data structure can be the same as the pointer to a right data structure.

Affected

17 ranges
VendorProductVersion rangeFixed in
canonicalubuntu_linux
canonicalubuntu_linux
canonicalubuntu_linux
debiandebian_linux
debianlinux< linux 5.7.17-1 (bookworm)linux 5.7.17-1 (bookworm)
linuxlinux_kernel>= 0 < 5.7.17-15.7.17-1
linuxlinux_kernel>= 0 < 5.7.17-15.7.17-1
linuxlinux_kernel>= 0 < 5.7.17-15.7.17-1
linuxlinux_kernel>= 0 < 5.7.17-15.7.17-1
linuxlinux_kernel>= 0 < 4.15.0-121.1234.15.0-121.123
linuxlinux_kernel>= 2.6.31 < 4.4.2334.4.233
linuxlinux_kernel>= 4.10 < 4.14.1944.14.194
linuxlinux_kernel>= 4.15 < 4.19.1414.19.141
linuxlinux_kernel>= 4.20 < 5.4.605.4.60
linuxlinux_kernel>= 4.5.0 < 4.9.2334.9.233
linuxlinux_kernel>= 5.5.0 < 5.7.175.7.17
linuxlinux_kernel>= 5.8 < 5.8.35.8.3

CVSS provenance

nvdv3.17.8HIGHCVSS:3.1/AV:L/AC:L/PR:N/UI:R/S:U/C:H/I:H/A:H
nvdv2.06.8MEDIUMAV:N/AC:M/Au:N/C:P/I:P/A:P
osv7.8HIGH
vendor_debian7.8HIGH
vendor_redhat7.8HIGH
vendor_ubuntu5.5MEDIUM
Stop checking back — get the weekly exploitation signal.

Every Monday: what got weaponized or added to CISA KEV in the last seven days — each CVE cross-linked to its PoC, Nuclei template, and detection rule. Free, one email a week, unsubscribe in one click.