A use-after-free vulnerability was found in the cyttsp4_core driver in the Linux kernel. This issue occurs in the device cleanup routine due to a possible rearming of the watchdog_timer from the workqueue. This could allow a local user to crash the system, causing a denial of service.
| Version | Score | Severity | Vector String |
|---|---|---|---|
| 3.1 | 5.5 | Medium | CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:N/I:N/A:H |
| Product | Vendor | Version |
|---|---|---|
| Red Hat Enterprise Linux 8 | Red Hat | < ef2590a5305e0b8e9342f84c2214aa478ee7f28e |
| Red Hat Enterprise Linux 7 | Red Hat | < 6a315471cb6a07f651e1d3adc8962730f4fcccac |
| Red Hat Enterprise Linux 6 | Red Hat | < 828f4c31684da94ecf0b44a2cbd35bbede04f0bd |
| Red Hat Enterprise Linux 9 | Red Hat | 3.19 |
| Red Hat Enterprise Linux 8 | Red Hat | < 96cfe05051fd8543cdedd6807ec59a0e6c409195 |
| Red Hat Enterprise Linux 7 | Red Hat | < 0750f769b95841b34a9fe8c418dd792ff526bf86 |
| Red Hat Enterprise Linux 9 | Red Hat | < 3.19 |