Linux kernel
cpe:2.3:a:linux:linux_kernel:*:*:*:*:*:*:*, +4 more
A vulnerability in the Linux kernel's loop device driver has been addressed. The issue involved ensuring that the loop device associated with the gendisk private data remained valid until the gendisk was completely freed. The loop driver previously took significant measures to prevent a device from being released while still in use. However, to resolve a potential deadlock, this restriction will be eased slightly in the near future.
The vulnerability could lead to a use-after-free condition, potentially causing a deadlock situation.
Our algorithm analyzes dozens of metrics to generate these 8 key vulnerability categories, which are then combined to calculate the overall risk score.