parse_audio_mixer_unit in sound/usb/mixer.c in the Linux kernel through 5.2.9 mishandles a short descriptor, leading to out-of-bounds memory access.
4.4.0-166.1954.4.0-1096.1074.15.0-1052.54~16.04.14.15.0-1061.664.15.0-1047.504.15.0-66.75~16.04.14.4.0-1060.674.15.0-1027.30~16.04.14.4.0-1124.1334.4.0-1128.136Exploitability
AV:LAC:LPR:LUI:NScope
S:UImpact
C:HI:HA:HCVSS:3.0/AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H