CVE-2019-18786
Publication date 6 November 2019
Last updated 25 August 2025
Ubuntu priority
Cvss 3 Severity Score
Description
In the Linux kernel through 5.3.8, f->fmt.sdr.reserved is uninitialized in rcar_drif_g_fmt_sdr_cap in drivers/media/platform/rcar_drif.c, which could cause a memory disclosure problem.
From the Ubuntu Security Team
It was discovered that the Renesas Digital Radio Interface (DRIF) driver in the Linux kernel did not properly initialize data. A local attacker could possibly use this to expose sensitive information (kernel memory).
Status
| Package | Ubuntu Release | Status | 
|---|---|---|
| linux-aws | 20.04 LTS focal | 
                                Not affected 
                                
                               | 
| 18.04 LTS bionic | 
                                Fixed 4.15.0-1060.62 
                                
                               | |
| 16.04 LTS xenial | 
                                Not affected 
                                
                               | |
| 14.04 LTS trusty | Ignored was needs-triage ESM criteria | |
| linux-aws-5.0 | 20.04 LTS focal | Not in release | 
| 18.04 LTS bionic | 
                                Fixed 5.0.0-1025.28 
                                
                               | |
| 16.04 LTS xenial | Not in release | |
| 14.04 LTS trusty | Not in release | |
| linux-azure-5.3 | 20.04 LTS focal | Not in release | 
| 18.04 LTS bionic | 
                                Fixed 5.3.0-1013.14~18.04.1 
                                
                               | |
| 16.04 LTS xenial | Not in release | |
| 14.04 LTS trusty | Not in release | |
| linux-aws-5.3 | 20.04 LTS focal | Not in release | 
| 18.04 LTS bionic | 
                                Not affected 
                                
                               | |
| 16.04 LTS xenial | Not in release | |
| 14.04 LTS trusty | Not in release | |
| linux-azure-4.15 | 20.04 LTS focal | Not in release | 
| 18.04 LTS bionic | 
                                Not affected 
                                
                               | |
| 16.04 LTS xenial | Not in release | |
| 14.04 LTS trusty | Not in release | |
| linux | 20.04 LTS focal | 
                                Not affected 
                                
                               | 
| 18.04 LTS bionic | 
                                Fixed 4.15.0-88.88 
                                
                               | |
| 16.04 LTS xenial | 
                                Not affected 
                                
                               | |
| 14.04 LTS trusty | Ignored was needs-triage ESM criteria | |
| linux-aws-hwe | 20.04 LTS focal | Not in release | 
| 18.04 LTS bionic | Not in release | |
| 16.04 LTS xenial | 
                                Fixed 4.15.0-1060.62~16.04.1 
                                
                               | |
| 14.04 LTS trusty | Not in release | |
| linux-azure | 20.04 LTS focal | 
                                Not affected 
                                
                               | 
| 18.04 LTS bionic | 
                                Fixed 5.0.0-1032.34 
                                
                               | |
| 16.04 LTS xenial | 
                                Fixed 4.15.0-1071.76 
                                
                               | |
| 14.04 LTS trusty | 
                                Fixed 4.15.0-1071.76~14.04.1 
                                
                                   | |
| linux-azure-edge | 20.04 LTS focal | Not in release | 
| 18.04 LTS bionic | Ignored end of life, was needs-triage | |
| 16.04 LTS xenial | Not in release | |
| 14.04 LTS trusty | Not in release | |
| linux-gcp | 20.04 LTS focal | 
                                Not affected 
                                
                               | 
| 18.04 LTS bionic | 
                                Fixed 5.0.0-1031.32 
                                
                               | |
| 16.04 LTS xenial | 
                                Fixed 4.15.0-1055.59 
                                
                               | |
| 14.04 LTS trusty | Not in release | |
| linux-gcp-4.15 | 20.04 LTS focal | Not in release | 
| 18.04 LTS bionic | 
                                Not affected 
                                
                               | |
| 16.04 LTS xenial | Not in release | |
| 14.04 LTS trusty | Not in release | |
| linux-gcp-5.3 | 20.04 LTS focal | Not in release | 
| 18.04 LTS bionic | 
                                Fixed 5.3.0-1012.13~18.04.1 
                                
                               | |
| 16.04 LTS xenial | Not in release | |
| 14.04 LTS trusty | Not in release | |
| linux-gcp-edge | 20.04 LTS focal | Not in release | 
| 18.04 LTS bionic | Ignored end of life, was needs-triage | |
| 16.04 LTS xenial | Not in release | |
| 14.04 LTS trusty | Not in release | |
| linux-gke-4.15 | 20.04 LTS focal | Not in release | 
| 18.04 LTS bionic | 
                                Fixed 4.15.0-1052.55 
                                
                               | |
| 16.04 LTS xenial | Not in release | |
| 14.04 LTS trusty | Not in release | |
| linux-gke-5.0 | 20.04 LTS focal | Not in release | 
| 18.04 LTS bionic | 
                                Fixed 5.0.0-1030.31 
                                
                               | |
| 16.04 LTS xenial | Not in release | |
| 14.04 LTS trusty | Not in release | |
| linux-gke-5.3 | 20.04 LTS focal | Not in release | 
| 18.04 LTS bionic | 
                                Fixed 5.3.0-1012.13~18.04.1 
                                
                               | |
| 16.04 LTS xenial | Not in release | |
| 14.04 LTS trusty | Not in release | |
| linux-hwe | 20.04 LTS focal | Not in release | 
| 18.04 LTS bionic | 
                                Fixed 5.3.0-40.32~18.04.1 
                                
                               | |
| 16.04 LTS xenial | 
                                Fixed 4.15.0-88.88~16.04.1 
                                
                               | |
| 14.04 LTS trusty | Not in release | |
| linux-hwe-edge | 20.04 LTS focal | Not in release | 
| 18.04 LTS bionic | Ignored end of life, was needed | |
| 16.04 LTS xenial | Ignored end of life, was needed | |
| 14.04 LTS trusty | Not in release | |
| linux-kvm | 20.04 LTS focal | 
                                Not affected 
                                
                               | 
| 18.04 LTS bionic | 
                                Fixed 4.15.0-1053.53 
                                
                               | |
| 16.04 LTS xenial | 
                                Not affected 
                                
                               | |
| 14.04 LTS trusty | Not in release | |
| linux-lts-trusty | 20.04 LTS focal | Not in release | 
| 18.04 LTS bionic | Not in release | |
| 16.04 LTS xenial | Not in release | |
| 14.04 LTS trusty | Not in release | |
| linux-lts-xenial | 20.04 LTS focal | Not in release | 
| 18.04 LTS bionic | Not in release | |
| 16.04 LTS xenial | Not in release | |
| 14.04 LTS trusty | Ignored was needs-triage ESM criteria | |
| linux-oem | 20.04 LTS focal | Not in release | 
| 18.04 LTS bionic | 
                                Fixed 4.15.0-1073.83 
                                
                               | |
| 16.04 LTS xenial | Ignored end of standard support, was needs-triage | |
| 14.04 LTS trusty | Not in release | |
| linux-oem-5.6 | 20.04 LTS focal | 
                                Not affected 
                                
                               | 
| 18.04 LTS bionic | Not in release | |
| 16.04 LTS xenial | Not in release | |
| 14.04 LTS trusty | Not in release | |
| linux-oem-osp1 | 20.04 LTS focal | Not in release | 
| 18.04 LTS bionic | 
                                Fixed 5.0.0-1039.44 
                                
                               | |
| 16.04 LTS xenial | Not in release | |
| 14.04 LTS trusty | Not in release | |
| linux-oracle | 20.04 LTS focal | 
                                Not affected 
                                
                               | 
| 18.04 LTS bionic | 
                                Fixed 4.15.0-1033.36 
                                
                               | |
| 16.04 LTS xenial | 
                                Fixed 4.15.0-1033.36~16.04.1 
                                
                               | |
| 14.04 LTS trusty | Not in release | |
| linux-oracle-5.0 | 20.04 LTS focal | Not in release | 
| 18.04 LTS bionic | 
                                Fixed 5.0.0-1011.16 
                                
                               | |
| 16.04 LTS xenial | Not in release | |
| 14.04 LTS trusty | Not in release | |
| linux-oracle-5.3 | 20.04 LTS focal | Not in release | 
| 18.04 LTS bionic | 
                                Not affected 
                                
                               | |
| 16.04 LTS xenial | Not in release | |
| 14.04 LTS trusty | Not in release | |
| linux-raspi | 20.04 LTS focal | 
                                Not affected 
                                
                               | 
| 18.04 LTS bionic | Not in release | |
| 16.04 LTS xenial | Not in release | |
| 14.04 LTS trusty | Not in release | |
| linux-raspi2 | 20.04 LTS focal | Ignored replaced by linux-raspi | 
| 18.04 LTS bionic | 
                                Fixed 4.15.0-1055.59 
                                
                               | |
| 16.04 LTS xenial | 
                                Not affected 
                                
                               | |
| 14.04 LTS trusty | Not in release | |
| linux-raspi2-5.3 | 20.04 LTS focal | Not in release | 
| 18.04 LTS bionic | 
                                Fixed 5.3.0-1018.20~18.04.1 
                                
                               | |
| 16.04 LTS xenial | Not in release | |
| 14.04 LTS trusty | Not in release | |
| linux-riscv | 20.04 LTS focal | 
                                Not affected 
                                
                               | 
| 18.04 LTS bionic | Not in release | |
| 16.04 LTS xenial | Not in release | |
| 14.04 LTS trusty | Not in release | |
| linux-snapdragon | 20.04 LTS focal | Not in release | 
| 18.04 LTS bionic | 
                                Fixed 4.15.0-1072.79 
                                
                               | |
| 16.04 LTS xenial | 
                                Not affected 
                                
                               | |
| 14.04 LTS trusty | Not in release | 
Get expanded security coverage with Ubuntu Pro
Reduce your average CVE exposure time from 98 days to 1 day with expanded CVE patching, ten-years security maintenance and optional support for the full stack of open-source applications. Free for personal use.
Get Ubuntu Pro 30-day free trialSeverity score breakdown
| Parameter | Value | 
|---|---|
| Base score |  | 
| Attack vector | Local | 
| Attack complexity | Low | 
| Privileges required | Low | 
| User interaction | None | 
| Scope | Unchanged | 
| Confidentiality | High | 
| Integrity impact | None | 
| Availability impact | None | 
| Vector | CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:N/A:N | 
References
Related Ubuntu Security Notices (USN)
- USN-4284-1
- Linux kernel vulnerabilities
- 19 February 2020
- USN-4285-1
- Linux kernel vulnerabilities
- 18 February 2020
- USN-4287-1
- Linux kernel vulnerabilities
- 18 February 2020
- USN-4287-2
- Linux kernel (Azure) vulnerabilities
- 18 February 2020