UVI-2021-1000457
Dashboard / Vulnerabilities / UVI-2021-1000457
UVI-2021-1000457
Published: 31 May 2021Last Modified: 13 Feb 2025
Summary: spi: Fix use-after-free with devm_spi_alloc_*
Details: spi: Fix use-after-free with devm_spi_alloc_* This is an automated ID intended to aid in discovery of potential security vulnerabilities. The actual impact and attack plausibility have not yet been proven. This ID is fixed in Linux Kernel version v4.19.191 by commit 28a5529068c51cdf0295ab1e11a99a3a909a03e4, it was introduced in version v4.19.163 by commit 234b432c7b6184b2d6c5ba2c55f0dd5023c0edf0. For more details please see the references link.
References:
Affected packages
Package
Name: Kernel
Purl:
Affected ranges
Type: GIT
Events:
Introduced- 234b432c7b6184b2d6c5ba2c55f0dd5023c0edf0
Fixed -None
Affected versions
v4.19.163
v4.19.164
v4.19.165
v4.19.166
v4.19.167
v4.19.168
v4.19.169
v4.19.170
v4.19.171
v4.19.172
v4.19.173
v4.19.174
v4.19.175
v4.19.176
v4.19.177
v4.19.178
v4.19.179
v4.19.180
v4.19.181
v4.19.182
v4.19.183
v4.19.184
v4.19.185
v4.19.186
v4.19.187
v4.19.188
v4.19.189
v4.19.190
Common Vulnerability Scoring System
Attack Vector
Network
Adjacent
Local
Physical
Privileges Required
None
Low
High
User Interaction
None
Required
Scope
Unchanged
Changed
Confidentiality
None
Low
High
Integrity
None
Low
High
Availability
None
Low
High
