In the Linux kernel, the following vulnerability has been resolved: rtnetlink: make sure to refresh master_dev/m_ops in __rtnl_newlink() While looking at one unrelated syzbot bug, I found the replay logic in __rtnl_newlink() to potentially trigger use-after-free. It is better to clear master_dev and m_ops inside the loop, in case we have to replay it.
| Product | Vendor | Version |
|---|---|---|
| Linux | Linux | Kernel-3.10 |
| Linux | Linux | Kernel-3.18 |
| Linux | Linux | Adobe Acrobat and Reader 2018.011.20038 and earlier, 2017.011.30079 and earlier, and 2015.006.30417 and earlier versions |
| Linux | Linux | See provided reference |