Linux kernel
cpe:2.3:a:linux:linux_kernel:*:*:*:*:*:*:*, +4 more
A race condition vulnerability has been identified in the Linux kernel's MCTP USB transport driver. This issue arises from a timing conflict between completing a USB Request Block (URB) and canceling a scheduled retry operation, which can lead to unintended behavior. The vulnerability is present in the Linux kernel stable tree.
Exploitation of this vulnerability can cause a race condition, where the completion of a USB request can prematurely trigger a retry operation, potentially leading to incorrect handling of USB data.
Users can upgrade to the latest version of the Linux kernel stable tree, where this vulnerability has been addressed. Instructions for downloading the patched version are available on the official Linux kernel website.
Our algorithm analyzes dozens of metrics to generate these 8 key vulnerability categories, which are then combined to calculate the overall risk score.