Linux kernel
cpe:2.3:a:linux:linux_kernel:*:*:*:*:*:*:*, +4 more
A use-after-free vulnerability has been identified in the Linux kernel's reference tracking mechanism for network devices. The issue arises during the device dismantling process, where improper handling of reference counts can lead to accessing freed memory. This vulnerability has been addressed by implementing detection for such use-after-free scenarios, ensuring that reference tracking correctly marks structures as dead and checks this status during allocation and deallocation of references.
Exploitation of this vulnerability could lead to use-after-free conditions, potentially allowing for arbitrary code execution or memory corruption.
Our algorithm analyzes dozens of metrics to generate these 8 key vulnerability categories, which are then combined to calculate the overall risk score.