VYPR
Medium severity6.5NVD Advisory· Published Aug 29, 2019· Updated Jun 17, 2026

CVE-2019-11476

CVE-2019-11476

Description

An integer overflow in whoopsie before versions 0.2.52.5ubuntu0.1, 0.2.62ubuntu0.1, 0.2.64ubuntu0.1, 0.2.66, results in an out-of-bounds write to a heap allocated buffer when processing large crash dumps. This results in a crash or possible code-execution in the context of the whoopsie process.

AI Insight

LLM-synthesized narrative grounded in this CVE's description and references.

Affected products

6
  • cpe:2.3:o:canonical:ubuntu_linux:16.04:*:*:*:lts:*:*:*+ 3 more
    • cpe:2.3:o:canonical:ubuntu_linux:16.04:*:*:*:lts:*:*:*
    • cpe:2.3:o:canonical:ubuntu_linux:18.04:*:*:*:lts:*:*:*
    • cpe:2.3:o:canonical:ubuntu_linux:18.10:*:*:*:*:*:*:*
    • cpe:2.3:o:canonical:ubuntu_linux:19.04:*:*:*:*:*:*:*
  • Ubuntu/whoopsiellm-fuzzy2 versions
    <0.2.52.5ubuntu0.1, <0.2.62ubuntu0.1, <0.2.64ubuntu0.1, <0.2.66+ 1 more
    • (no CPE)range: <0.2.52.5ubuntu0.1, <0.2.62ubuntu0.1, <0.2.64ubuntu0.1, <0.2.66
    • (no CPE)range: before 0.2.52.5ubuntu0.1

Patches

Vulnerability mechanics

References

3

News mentions

0

No linked articles in our index yet.