CVE-2019-15117: Linux Kernel
High severity, CVSS 7.8. EPSS: 0.6% chance of exploitation in the next 30 days.
parse_audio_mixer_unit in sound/usb/mixer.c in the Linux kernel through 5.2.9 mishandles a short descriptor, leading to out-of-bounds memory access.
Affected products
- Linux Linux Kernel: up to and including 5.2.9
Published 2019-08-16. Last modified 2026-06-17.