Published on: 07/21/2021 12:00:00 AM UTC
Last Modified on: 07/21/2021 03:21:00 PM UTC
The following vulnerability was found:
hso_free_net_device in drivers/net/usb/hso.c in the Linux kernel through 5.13.4 calls unregister_netdev without checking for the NETREG_REGISTERED state, leading to a use-after-free and a double free.
- CVE-2021-37159 has been assigned by [email protected] to track the vulnerability
|[PATCH v2] net: hso: do not call unregister if not registered — Linux USB|| www.spinics.net |