CVE-2019-20810: Canonical Ubuntu Linux

Medium severity, CVSS 5.5. EPSS: 0.5% chance of exploitation in the next 30 days.

go7007_snd_init in drivers/media/usb/go7007/snd-go7007.c in the Linux kernel before 5.6 does not call snd_card_free for a failure path, which causes a memory leak, aka CID-9453264ef586.

Affected products

  • Canonical Ubuntu Linux: version 14.04 only; version 16.04 only; version 18.04 only; version 20.04 only
  • Linux Linux Kernel: before 5.6 (fixed in 5.6)
  • Opensuse Leap: version 15.1 only; version 15.2 only

Published 2020-06-03. Last modified 2026-06-17.