In the Linux kernel, the following vulnerability has been resolved:memstick: rtsx_usb_ms: Fix slab-use-after-free in rtsx_usb_ms_drv_removeThis fixes the following crash:==================================================================BUG: KASAN: slab-use-after-free in rtsx_usb_ms_poll_card+0x159/0x200 [rtsx_usb_ms]Read of size 8 at addr ffff888136335380 by task kworker/6:0/140241CPU: 6 UID: 0 PID: 140241 Comm: kworker/6:0 Kdump: loaded Tainted: G E 6.14.0-rc6+ #1Tainted: [E]=UNSIGNED_MODULEHardware name: LENOVO 30FNA1V7CW/1057, BIOS S0EKT54A 07/01/2024Workqueue: events rtsx_usb_ms_poll_card [rtsx_usb_ms]Call Trace:
No PoCs from references.
- https://github.com/fkie-cad/nvd-json-data-feeds
- https://github.com/w4zu/Debian_security