vulnerability
Ubuntu: (Multiple Advisories) (CVE-2019-1999): Linux kernel vulnerabilities
| Severity | CVSS | Published | Added | Modified |
|---|---|---|---|---|
| 7 | (AV:L/AC:L/Au:N/C:C/I:C/A:C) | Feb 28, 2019 | May 15, 2019 | Mar 27, 2026 |
Severity
7
CVSS
(AV:L/AC:L/Au:N/C:C/I:C/A:C)
Published
Feb 28, 2019
Added
May 15, 2019
Modified
Mar 27, 2026
Description
In binder_alloc_free_page of binder_alloc.c, there is a possible double free due to improper locking. This could lead to local escalation of privilege in the kernel with no additional execution privileges needed. User interaction is not needed for exploitation. Product: Android. Versions: Android kernel. Android ID: A-120025196.
Solutions
ubuntu-upgrade-linux-image-5-0-0-1006-awsubuntu-upgrade-linux-image-5-0-0-1006-azureubuntu-upgrade-linux-image-5-0-0-1006-gcpubuntu-upgrade-linux-image-5-0-0-1006-kvmubuntu-upgrade-linux-image-5-0-0-1008-raspi2ubuntu-upgrade-linux-image-5-0-0-15-genericubuntu-upgrade-linux-image-5-0-0-15-generic-lpaeubuntu-upgrade-linux-image-5-0-0-15-lowlatencyubuntu-upgrade-linux-image-awsubuntu-upgrade-linux-image-azureubuntu-upgrade-linux-image-gcpubuntu-upgrade-linux-image-genericubuntu-upgrade-linux-image-generic-lpaeubuntu-upgrade-linux-image-gkeubuntu-upgrade-linux-image-kvmubuntu-upgrade-linux-image-lowlatencyubuntu-upgrade-linux-image-raspi2ubuntu-upgrade-linux-image-virtual
References
Rapid7 Labs
2026 Global Threat Landscape Report
The predictive window has collapsed. Exploitation follows disclosure in days. See how attackers are accelerating and how to stay ahead.