CVE-2019-19377 on Ubuntu 18.04 LTS (bionic) - medium.
Description:
In the Linux kernel 5.0.21, mounting a crafted btrfs filesystem image, performing some operations, and unmounting can lead to a use-after-free in btrfs_queue_work in fs/btrfs/async-thread.c