Linux kernel
cpe:2.3:a:linux:linux_kernel:*:*:*:*:*:*:*, +4 more
A use-after-free vulnerability has been identified in the Linux kernel Octeon EP driver. This issue arises when the `octep_probe` function fails to retrieve the device's MAC address, causing it to exit while leaving the delayed work `intr_poll_task` queued. When this queued work eventually executes, it leads to a use-after-free condition. The vulnerability affects the Linux kernel stable tree.
Exploitation of this vulnerability causes a use-after-free condition, which can lead to memory corruption and potentially allow for arbitrary code execution.
Users can upgrade to the latest version of the Linux kernel where this vulnerability has been addressed. Instructions for upgrading the Linux kernel can be found in the official Linux documentation.
Our algorithm analyzes dozens of metrics to generate these 8 key vulnerability categories, which are then combined to calculate the overall risk score.