Lucene search

K
veracodeVeracode Vulnerability DatabaseVERACODE:39123
HistoryFeb 03, 2023 - 11:01 p.m.

Use-after-free

2023-02-0323:01:08
Veracode Vulnerability Database
sca.analysiscenter.veracode.com
19
kernel
use-after-free
vulnerability
race condition
alsa pcm
local user
privilege escalation
system software

0.0004 Low

EPSS

Percentile

5.1%

kernel is vulnerable to Use-after-free. A user is able to trigger concurrent calls of PCM hw_params and hw_free ioctls causing race condition to happen inside ALSA PCM for other ioctls. This flaw allows a local user to crash or potentially escalate their privileges on the system.