Linux kernel
cpe:2.3:a:linux:linux_kernel:*:*:*:*:*:*:*, +4 more
A refcount leak vulnerability has been identified in the Linux kernel's IIO ADC Aspeed component. The issue arises in the 'aspeed_adc_set_trim_data' function, which returns a node pointer with an incremented reference count. The vulnerability can be exploited if the reference count is not properly decremented, leading to a memory management issue.
The vulnerability causes a refcount leak, which can lead to memory management issues such as use-after-free vulnerabilities or memory exhaustion.
Our algorithm analyzes dozens of metrics to generate these 8 key vulnerability categories, which are then combined to calculate the overall risk score.