GSD-2021-1000472
Dashboard / Vulnerabilities / GSD-2021-1000472
GSD-2021-1000472
Published: 31 May 2021Last Modified: 22 Feb 2023
Summary: spi: Fix use-after-free with devm_spi_alloc_*
Details: spi: Fix use-after-free with devm_spi_alloc_* This is an automated ID intended to aid in discovery of potential security vulnerabilities. The actual impact and attack plausibility have not yet been proven. This ID is fixed in Linux Kernel version v4.14.233 by commit 8e029707f50a82c53172359c686b2536ab54e58c, it was introduced in version v4.14.212 by commit 8c45a1c6c951bbe7f95db78fcab46f7337364468. For more details please see the references link.
References:
Affected packages
Package
Name: Kernel
Purl:
Affected ranges
Type: GIT
Events:
Introduced- 8c45a1c6c951bbe7f95db78fcab46f7337364468
Fixed -None
Affected versions
v4.14.212
v4.14.213
v4.14.214
v4.14.215
v4.14.216
v4.14.217
v4.14.218
v4.14.219
v4.14.220
v4.14.221
v4.14.222
v4.14.223
v4.14.224
v4.14.225
v4.14.226
v4.14.227
v4.14.228
v4.14.229
v4.14.230
v4.14.231
v4.14.232
Common Vulnerability Scoring System
Attack Vector
Network
Adjacent
Local
Physical
Privileges Required
None
Low
High
User Interaction
None
Required
Scope
Unchanged
Changed
Confidentiality
None
Low
High
Integrity
None
Low
High
Availability
None
Low
High
