Количество 5
Количество 5
CVE-2026-90045
(In the Linux kernel, the following vulnerability has been resolved: U ...)
CVE-2026-90045
In the Linux kernel, the following vulnerability has been resolved: USB: gadget: ffs: fix mm lifetime handling io_data stores a pointer to the submitting task's mm_struct, but does not currently hold a reference to it while async requests are pending. This can result in a use-after-free if the task exits before completion handling finishes. Take a reference with mmgrab() when queuing the read request and release it with mmdrop() on request completion.
CVE-2026-90045
USB: gadget: ffs: fix mm lifetime handling
CVE-2026-90045
In the Linux kernel, the following vulnerability has been resolved: U ...
GHSA-g8pp-pjx5-c2hv
In the Linux kernel, the following vulnerability has been resolved: USB: gadget: ffs: fix mm lifetime handling io_data stores a pointer to the submitting task's mm_struct, but does not currently hold a reference to it while async requests are pending. This can result in a use-after-free if the task exits before completion handling finishes. Take a reference with mmgrab() when queuing the read request and release it with mmdrop() on request completion.
Уязвимостей на страницу
Уязвимость | CVSS | EPSS | Опубликовано | |
|---|---|---|---|---|
CVE-2026-90045 (In the Linux kernel, the following vulnerability has been resolved: U ...) | CVSS3: 7.8 | 0% Низкий | 5 дней назад | |
CVE-2026-90045 In the Linux kernel, the following vulnerability has been resolved: USB: gadget: ffs: fix mm lifetime handling io_data stores a pointer to the submitting task's mm_struct, but does not currently hold a reference to it while async requests are pending. This can result in a use-after-free if the task exits before completion handling finishes. Take a reference with mmgrab() when queuing the read request and release it with mmdrop() on request completion. | CVSS3: 7.8 | 0% Низкий | 6 дней назад | |
CVE-2026-90045 USB: gadget: ffs: fix mm lifetime handling | 0% Низкий | 5 дней назад | ||
CVE-2026-90045 In the Linux kernel, the following vulnerability has been resolved: U ... | CVSS3: 7.8 | 0% Низкий | 6 дней назад | |
GHSA-g8pp-pjx5-c2hv In the Linux kernel, the following vulnerability has been resolved: USB: gadget: ffs: fix mm lifetime handling io_data stores a pointer to the submitting task's mm_struct, but does not currently hold a reference to it while async requests are pending. This can result in a use-after-free if the task exits before completion handling finishes. Take a reference with mmgrab() when queuing the read request and release it with mmdrop() on request completion. | CVSS3: 7.8 | 0% Низкий | 6 дней назад |
Уязвимостей на страницу