UBUNTU-CVE-2021-46905
Dashboard / Vulnerabilities / UBUNTU-CVE-2021-46905
Summary:
Details: In the Linux kernel, the following vulnerability has been resolved: net: hso: fix NULL-deref on disconnect regression Commit 8a12f8836145 ("net: hso: fix null-ptr-deref during tty device unregistration") fixed the racy minor allocation reported by syzbot, but introduced an unconditional NULL-pointer dereference on every disconnect instead. Specifically, the serial device table must no longer be accessed after the minor has been released by hso_serial_tty_unregister().
References: https://ubuntu.com/security/CVE-2021-46905, https://git.kernel.org/linus/2ad5692db72874f02b9ad551d26345437ea4f7f3, https://www.cve.org/CVERecord?id=CVE-2021-46905
Affected packages
Package
Name: linux-azure
Purl: pkg:deb/ubuntu/linux-azure?arch=source&distro=trusty%2Fesm
Affected ranges
Type: ECOSYSTEM
Events:
