A use-after-free flaw was found in r592_remove in drivers/memstick/host/r592.c in media access in the Linux Kernel. This flaw allows a local attacker to crash the system at device disconnect, possibly leading to a kernel information leak.
2023-06-09T20:15:10.327
2025-03-11T15:15:38.867
Modified
CVSSv3.1: 7.1 (HIGH)
Type | Vendor | Product | Version/Range | Vulnerable? |
---|---|---|---|---|
Operating System | linux | linux_kernel | < 4.14.316 | Yes |
Operating System | linux | linux_kernel | < 4.19.284 | Yes |
Operating System | linux | linux_kernel | < 5.4.244 | Yes |
Operating System | linux | linux_kernel | < 5.10.181 | Yes |
Operating System | linux | linux_kernel | < 5.15.113 | Yes |
Operating System | linux | linux_kernel | < 6.1.30 | Yes |
Operating System | linux | linux_kernel | < 6.3.4 | Yes |
Application | netapp | hci_baseboard_management_controller | h300s | Yes |
Application | netapp | hci_baseboard_management_controller | h410c | Yes |
Application | netapp | hci_baseboard_management_controller | h410s | Yes |
Application | netapp | hci_baseboard_management_controller | h500s | Yes |
Application | netapp | hci_baseboard_management_controller | h700s | Yes |
Operating System | debian | debian_linux | 10.0 | Yes |