In the Linux kernel through 5.4.6, there are information leaks of uninitialized memory to a USB device in the drivers/net/can/usb/kvaserusb/kvaserusb_leaf.c driver, aka CID-da2311a6385c.
[
{
"signature_type": "Line",
"source": "https://github.com/torvalds/linux/commit/da2311a6385c3b499da2ed5d9be59ce331fa93e9",
"target": {
"file": "drivers/net/can/usb/kvaser_usb/kvaser_usb_leaf.c"
},
"id": "CVE-2019-19947-56175c48",
"signature_version": "v1",
"digest": {
"threshold": 0.9,
"line_hashes": [
"57317421447917981814825206669569882564",
"262929481252162821533464766764677323673",
"249817189782192317438060618555021844394",
"217531304187657066369906021740194191423",
"279686825722889754478401133591054292183",
"105661854697867283031034786364669476995",
"59948552764613568308814195910381756948",
"203903288047648785378346835409559956552",
"279686825722889754478401133591054292183",
"105661854697867283031034786364669476995",
"59948552764613568308814195910381756948",
"1713322789442282459228290614537703165"
]
},
"deprecated": false
}
]
"https://storage.googleapis.com/osv-test-cve-osv-conversion/osv-output/CVE-2019-19947.json"