CVE-2019-18814: Linux Kernel

Critical severity, CVSS 9.8. EPSS: 2.5% chance of exploitation in the next 30 days.

An issue was discovered in the Linux kernel through 5.3.9. There is a use-after-free when aa_label_parse() fails in aa_audit_rule_init() in security/apparmor/audit.c.

Affected products

  • Linux Linux Kernel: up to and including 5.3.9

Published 2019-11-07. Last modified 2026-06-17.