Description


hso_free_net_device in drivers/net/usb/hso.c in the Linux kernel through 5.13.4 calls unregister_netdev without checking for the NETREG_REGISTERED state, leading to a use-after-free and a double free.

Weaknesses



CWE-415CWE-416

CVSS impact metrics


CVSS:3.1/AV:P/AC:H/PR:N/UI:N/S:U/C:H/I:H/A:H

6.4 · Medium

Information


Source identifier

[email protected]

Vulnerability status

Modified

Published

2021-07-21T13:16:20.777Z

4 years ago

Last modified

2024-11-21T05:14:45.313Z

1 year ago