Linux kernel
cpe:2.3:a:linux:linux_kernel:*:*:*:*:*:*:*, +4 more
A double free vulnerability has been identified in the Linux kernel within the Chameleon device driver. The issue arises in the function 'chameleon_parse_gdd()', where the device is released twice if 'mcb_device_register()' fails. This flaw creates a double free condition, which can lead to memory corruption.
Exploitation of this vulnerability can cause memory corruption due to the double free condition, potentially leading to arbitrary code execution or a denial-of-service scenario.
Our algorithm analyzes dozens of metrics to generate these 8 key vulnerability categories, which are then combined to calculate the overall risk score.