Linux kernel
cpe:2.3:a:linux:linux_kernel:*:*:*:*:*:*:*, +4 more
A vulnerability in the Linux kernel's PCI power control driver can lead to improper resource management. When the function 'devm_add_action_or_reset()' fails, it triggers a cleanup process. The current implementation mistakenly allows for a double cleanup by reusing a label meant for error handling. This issue has been addressed by modifying the error handling to prevent redundant cleanup actions.
The vulnerability could cause resource leaks or undefined behavior due to improper cleanup management, potentially leading to system instability.
Users can apply the latest patch available in the Linux kernel stable tree to address this vulnerability.
Our algorithm analyzes dozens of metrics to generate these 8 key vulnerability categories, which are then combined to calculate the overall risk score.