The omninet_open function in drivers/usb/serial/omninet.c in the Linux kernel before 4.10.4 allows local users to cause a denial of service (tty exhaustion) by leveraging reference count mishandling.
Product | Vendor | Version |
---|---|---|
n/a | n/a | >= 2.0.0, < 3.1.48 |