An issue was discovered in the Linux kernel before 5.0.10. SMB2_read in fs/cifs/smb2pdu.c has a use-after-free. NOTE: this was not fixed correctly in 5.0.10; see the 5.0.11 ChangeLog, which documents a memory leak.
"https://storage.googleapis.com/osv-test-cve-osv-conversion/osv-output/CVE-2019-15920.json"
[
{
"signature_type": "Line",
"target": {
"file": "fs/cifs/smb2pdu.c"
},
"deprecated": false,
"id": "CVE-2019-15920-21a83a1d",
"signature_version": "v1",
"digest": {
"threshold": 0.9,
"line_hashes": [
"178750627593979067074119876150769676188",
"41896548515602106022229662240495107980",
"13331329799813860380798509926046020965",
"77069653159523033913194287517998499563",
"112293944804114519278299702152714339960",
"183093711762725065218374152130871464862",
"11724731536243913916696142829666124412"
]
},
"source": "https://github.com/torvalds/linux/commit/088aaf17aa79300cab14dbee2569c58cfafd7d6e"
},
{
"signature_type": "Function",
"target": {
"file": "fs/cifs/smb2pdu.c",
"function": "SMB2_read"
},
"deprecated": false,
"id": "CVE-2019-15920-9447c7dc",
"signature_version": "v1",
"digest": {
"function_hash": "195482916664552995547210634825261935829",
"length": 1902.0
},
"source": "https://github.com/torvalds/linux/commit/088aaf17aa79300cab14dbee2569c58cfafd7d6e"
}
]