Логотип exploitDog
bind:"GHSA-6m5m-pcmh-qg5r" OR bind:"CVE-2025-40095"
Консоль
Логотип exploitDog

exploitDog

bind:"GHSA-6m5m-pcmh-qg5r" OR bind:"CVE-2025-40095"

Количество 7

Количество 7

github логотип

GHSA-6m5m-pcmh-qg5r

5 месяцев назад

In the Linux kernel, the following vulnerability has been resolved: usb: gadget: f_rndis: Refactor bind path to use __free() After an bind/unbind cycle, the rndis->notify_req is left stale. If a subsequent bind fails, the unified error label attempts to free this stale request, leading to a NULL pointer dereference when accessing ep->ops->free_request. Refactor the error handling in the bind path to use the __free() automatic cleanup mechanism.

EPSS: Низкий
ubuntu логотип

CVE-2025-40095

5 месяцев назад

In the Linux kernel, the following vulnerability has been resolved: usb: gadget: f_rndis: Refactor bind path to use __free() After an bind/unbind cycle, the rndis->notify_req is left stale. If a subsequent bind fails, the unified error label attempts to free this stale request, leading to a NULL pointer dereference when accessing ep->ops->free_request. Refactor the error handling in the bind path to use the __free() automatic cleanup mechanism.

EPSS: Низкий
redhat логотип

CVE-2025-40095

5 месяцев назад

In the Linux kernel, the following vulnerability has been resolved: usb: gadget: f_rndis: Refactor bind path to use __free() After an bind/unbind cycle, the rndis->notify_req is left stale. If a subsequent bind fails, the unified error label attempts to free this stale request, leading to a NULL pointer dereference when accessing ep->ops->free_request. Refactor the error handling in the bind path to use the __free() automatic cleanup mechanism.

EPSS: Низкий
nvd логотип

CVE-2025-40095

5 месяцев назад

In the Linux kernel, the following vulnerability has been resolved: usb: gadget: f_rndis: Refactor bind path to use __free() After an bind/unbind cycle, the rndis->notify_req is left stale. If a subsequent bind fails, the unified error label attempts to free this stale request, leading to a NULL pointer dereference when accessing ep->ops->free_request. Refactor the error handling in the bind path to use the __free() automatic cleanup mechanism.

EPSS: Низкий
msrc логотип

CVE-2025-40095

5 месяцев назад

usb: gadget: f_rndis: Refactor bind path to use __free()

EPSS: Низкий
debian логотип

CVE-2025-40095

5 месяцев назад

In the Linux kernel, the following vulnerability has been resolved: u ...

EPSS: Низкий
fstec логотип

BDU:2026-02692

7 месяцев назад

Уязвимость функции rndis_bind() модуля drivers/usb/gadget/function/f_rndis.c драйвера гаджетов USB ядра операционной системы Linux, позволяющая нарушителю вызвать отказ в обслуживании

CVSS3: 5.5
EPSS: Низкий

Уязвимостей на страницу

Уязвимость
CVSS
EPSS
Опубликовано
github логотип
GHSA-6m5m-pcmh-qg5r

In the Linux kernel, the following vulnerability has been resolved: usb: gadget: f_rndis: Refactor bind path to use __free() After an bind/unbind cycle, the rndis->notify_req is left stale. If a subsequent bind fails, the unified error label attempts to free this stale request, leading to a NULL pointer dereference when accessing ep->ops->free_request. Refactor the error handling in the bind path to use the __free() automatic cleanup mechanism.

0%
Низкий
5 месяцев назад
ubuntu логотип
CVE-2025-40095

In the Linux kernel, the following vulnerability has been resolved: usb: gadget: f_rndis: Refactor bind path to use __free() After an bind/unbind cycle, the rndis->notify_req is left stale. If a subsequent bind fails, the unified error label attempts to free this stale request, leading to a NULL pointer dereference when accessing ep->ops->free_request. Refactor the error handling in the bind path to use the __free() automatic cleanup mechanism.

0%
Низкий
5 месяцев назад
redhat логотип
CVE-2025-40095

In the Linux kernel, the following vulnerability has been resolved: usb: gadget: f_rndis: Refactor bind path to use __free() After an bind/unbind cycle, the rndis->notify_req is left stale. If a subsequent bind fails, the unified error label attempts to free this stale request, leading to a NULL pointer dereference when accessing ep->ops->free_request. Refactor the error handling in the bind path to use the __free() automatic cleanup mechanism.

0%
Низкий
5 месяцев назад
nvd логотип
CVE-2025-40095

In the Linux kernel, the following vulnerability has been resolved: usb: gadget: f_rndis: Refactor bind path to use __free() After an bind/unbind cycle, the rndis->notify_req is left stale. If a subsequent bind fails, the unified error label attempts to free this stale request, leading to a NULL pointer dereference when accessing ep->ops->free_request. Refactor the error handling in the bind path to use the __free() automatic cleanup mechanism.

0%
Низкий
5 месяцев назад
msrc логотип
CVE-2025-40095

usb: gadget: f_rndis: Refactor bind path to use __free()

0%
Низкий
5 месяцев назад
debian логотип
CVE-2025-40095

In the Linux kernel, the following vulnerability has been resolved: u ...

0%
Низкий
5 месяцев назад
fstec логотип
BDU:2026-02692

Уязвимость функции rndis_bind() модуля drivers/usb/gadget/function/f_rndis.c драйвера гаджетов USB ядра операционной системы Linux, позволяющая нарушителю вызвать отказ в обслуживании

CVSS3: 5.5
0%
Низкий
7 месяцев назад

Уязвимостей на страницу