CVE-2019-16714: Canonical Ubuntu Linux

High severity, CVSS 7.5. EPSS: 2.7% chance of exploitation in the next 30 days.

In the Linux kernel before 5.2.14, rds6_inc_info_copy in net/rds/recv.c allows attackers to obtain sensitive information from kernel stack memory because tos and flags fields are not initialized.

Affected products

  • Canonical Ubuntu Linux: version 18.04 only; version 19.04 only
  • F5 Traffix Signaling Delivery Controller: from 5.0.0, up to and including 5.1.0
  • Linux Linux Kernel: before 5.2.14 (fixed in 5.2.14)

Published 2019-09-23. Last modified 2026-06-17.