CVE-2019-19815: Linux Kernel

Medium severity, CVSS 5.5. EPSS: 2.1% chance of exploitation in the next 30 days.

In the Linux kernel 5.0.21, mounting a crafted f2fs filesystem image can cause a NULL pointer dereference in f2fs_recover_fsync_data in fs/f2fs/recovery.c. This is related to F2FS_P_SB in fs/f2fs/f2fs.h.

Affected products

  • Linux Linux Kernel: version 5.0.21 only

Published 2019-12-17. Last modified 2026-06-17.