Linux kernel
cpe:2.3:a:linux:linux_kernel:*:*:*:*:*:*:*, +4 more
- >= 6.11, < 6.11.0-rc1
A vulnerability in the Linux kernel's CH341 USB to SPI driver has been addressed. The issue was related to improper management of device resources, which could lead to memory leaks when drivers were unbound without physical disconnection of the devices. This vulnerability affected the USB interface management in the device tree. The problem has been fixed by tying the lifetime of the driver data and SPI controller to the USB interface, ensuring proper resource release when the driver is unbound.
The vulnerability could cause memory leaks by not properly releasing resources when the driver is unbound, potentially leading to increased memory usage and degradation of system performance over time.
Users can apply the latest patch available in the Linux kernel stable tree to address this vulnerability.
Our algorithm analyzes dozens of metrics to generate these 8 key vulnerability categories, which are then combined to calculate the overall risk score.