CVE-2019-15117: Linux Kernel

High severity, CVSS 7.8. EPSS: 0.6% chance of exploitation in the next 30 days.

parse_audio_mixer_unit in sound/usb/mixer.c in the Linux kernel through 5.2.9 mishandles a short descriptor, leading to out-of-bounds memory access.

Affected products

  • Linux Linux Kernel: up to and including 5.2.9

Published 2019-08-16. Last modified 2026-06-17.