CVE-2019-12818: Linux Kernel

High severity, CVSS 7.5. EPSS: 6% chance of exploitation in the next 30 days.

An issue was discovered in the Linux kernel before 4.20.15. The nfc_llcp_build_tlv function in net/nfc/llcp_commands.c may return NULL. If the caller does not check for this, it will trigger a NULL pointer dereference. This will cause denial of service. This affects nfc_llcp_build_gb in net/nfc/llcp_core.c.

Affected products

  • Linux Linux Kernel: before 4.20.15 (fixed in 4.20.15)

Published 2019-06-14. Last modified 2026-06-17.