### [CVE-2019-15291](https://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2019-15291) ![](https://img.shields.io/static/v1?label=Product&message=n%2Fa&color=blue) ![](https://img.shields.io/static/v1?label=Version&message=n%2Fa&color=blue) ![](https://img.shields.io/static/v1?label=Vulnerability&message=n%2Fa&color=brighgreen) ### Description An issue was discovered in the Linux kernel through 5.2.9. There is a NULL pointer dereference caused by a malicious USB device in the flexcop_usb_probe function in the drivers/media/usb/b2c2/flexcop-usb.c driver. ### POC #### Reference - http://packetstormsecurity.com/files/155890/Slackware-Security-Advisory-Slackware-14.2-kernel-Updates.html - https://usn.ubuntu.com/4254-2/ - https://usn.ubuntu.com/4287-2/ #### Github - https://github.com/ARPSyndicate/cvemon - https://github.com/MrAgrippa/nes-01