CVE-2019-18811: Fedoraproject Fedora
Medium severity, CVSS 5.5. EPSS: 0.4% chance of exploitation in the next 30 days.
A memory leak in the sof_set_get_large_ctrl_data() function in sound/soc/sof/ipc.c in the Linux kernel through 5.3.9 allows attackers to cause a denial of service (memory consumption) by triggering sof_get_ctrl_copy_params() failures, aka CID-45c1380358b1.
Affected products
- Fedoraproject Fedora: version 30 only; version 31 only
- Linux Linux Kernel: up to and including 5.3.9
- Red Hat Enterprise Linux: version 8.0 only
Published 2019-11-07. Last modified 2026-06-17.