Resource exhaustion in Linux kernel - CVE-2019-15118
Published: October 23, 2019
Linux kernel
Detailed vulnerability description
The vulnerability allows a local user to perform a denial of service (DoS) attack.
The vulnerability exists due to incorrect handling of recursion within the check_input_term() function in sound/usb/mixer.c. A local user can run a specially crafted application to trigger resource exhaustion and perform a denial of service (DoS) attack.