Lucene search

K
veracodeVeracode Vulnerability DatabaseVERACODE:36596
HistoryAug 04, 2022 - 3:09 a.m.

Double Free

2022-08-0403:09:20
Veracode Vulnerability Database
sca.analysiscenter.veracode.com
15

0.0004 Low

EPSS

Percentile

14.3%

Linux kernel is vulnerable to double free. The vulnerability exists in usb_8dev_start_xmit in drivers/net/can/usb/usb_8dev.c because is no need to call dev_kfree_skb() when usb_submit_urb() fails because can_put_echo_skb() deletes original skb and can_free_echo_skb() deletes the cloned skb causing a double free.