CVE-2019-18675: Linux Kernel

High severity, CVSS 7.8. EPSS: 0.5% chance of exploitation in the next 30 days.

The Linux kernel through 5.3.13 has a start_offset+size Integer Overflow in cpia2_remap_buffer in drivers/media/usb/cpia2/cpia2_core.c because cpia2 has its own mmap implementation. This allows local users (with /dev/video0 access) to obtain read and write permissions on kernel physical pages, which can possibly result in a privilege escalation.

Affected products

  • Linux Linux Kernel: before 3.16.60 (fixed in 3.16.60); from 3.17, before 3.18.113 (fixed in 3.18.113); from 3.19, before 4.4.137 (fixed in 4.4.137); from 4.5, before 4.9.108 (fixed in 4.9.108); from 4.10, before 4.14.49 (fixed in 4.14.49); from 4.15, before 4.16.15 (fixed in 4.16.15)

Published 2019-11-25. Last modified 2026-06-17.