In the Linux kernel, the following vulnerability has been resolved:vsock/virtio: Initialization of the dangling pointer occurring in vsk->transDuring loopback communication, a dangling pointer can be created invsk->trans, potentially leading to a Use-After-Free condition. Thisissue is resolved by initializing vsk->trans to NULL.
No PoCs from references.
- https://github.com/ARPSyndicate/cve-scores
- https://github.com/Ian729/HackerNewsArchive
- https://github.com/kherrick/hacker-news
- https://github.com/kherrick/news-summary
- https://github.com/refetch-io/refetch
- https://github.com/w4zu/Debian_security
- https://github.com/xairy/linux-kernel-exploitation