thunderbolt: Keep XDomain reference during the lifetime of a service
21Vexday Risk Score
No sign of exploitation. No public exploitation artifact known so far.
ssvc Trackcvss 8.8epss 0.2%
exploitation probability
0.2%top 87% of all CVEs
observed exploitation
nono source reports it
In the Linux kernel, the following vulnerability has been resolved:
thunderbolt: Keep XDomain reference during the lifetime of a service
This is needed because we release the service ID in tb_service_release()
and the ID array is owned by the parent XDomain.
CVSS:3.1/AV:A/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H
Affected products
Linux · LinuxReferences
https://git.kernel.org/stable/c/8ab12d015884b8aa85ea7ed58c5a0bae4264fe60https://git.kernel.org/stable/c/8b4060998637f06975fceee9b73845d8672d411ehttps://git.kernel.org/stable/c/a4567e5380e4e46d0ea9a28d2d675e5c6f013d54https://git.kernel.org/stable/c/daeaa6c7211d03ed061b0dd22a875fad9372b090https://git.kernel.org/stable/c/ea60ae6233ca0fc0d414e9c11f0d86c63b303fc7