In the Linux kernel, the following vulnerability has been resolved:
misc: fastrpc: Don't remove map on creater_process and device_release
Do not remove the map from the list on error path in fastrpc_init_create_process, instead call fastrpc_map_put, to avoid use-after-free. Do not remove it on fastrpc_device_release either, call fastrpc_map_put instead.
The fastrpc_free_map is the only proper place to remove the map. This is called only after the reference count is 0.
CVSS Details
- CVSS 3.1 Base Score: 7.8
- CVSS 3.1 Vector: (CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H)
Covered by Rapid7
| Product | Vendor Advisory | Solution File | Added | Published |
|---|---|---|---|---|
| Debian | — | Upgrade linux | Aug 22, 2024 | Aug 22, 2024 |
| Dell Powerstore Dsa2025086 | — | Upgrade Dell PowerStoreOS to the latest version | Oct 23, 2025 | Feb 20, 2025 |
| Ubuntu | — | Upgrade linux-gcpUpgrade linux-iotUpgrade linux-gcp-fipsUpgrade linux-nvidia-tegra-5.15Upgrade linux-azure-5.4Upgrade linux-intel-iot-realtimeUpgrade linux-gcp-5.15Upgrade linux-azure-fdeUpgrade linux-lowlatency-hwe-5.15Upgrade linux-raspi-5.4Upgrade linux-awsUpgrade linux-realtimeUpgrade linux-bluefieldUpgrade linux-aws-5.15Upgrade linux-azure-5.15Upgrade linux-gcp-5.4Upgrade linux-azureUpgrade linux-intel-iotg-5.15Upgrade linux-lowlatencyUpgrade linux-nvidiaUpgrade linux-oracle-5.4Upgrade linux-riscv-5.15Upgrade linux-gkeopUpgrade linuxUpgrade linux-oracleUpgrade linux-aws-5.4Upgrade linux-oracle-5.15Upgrade linux-raspiUpgrade linux-kvmUpgrade linux-fipsUpgrade linux-azure-fipsUpgrade linux-ibm-5.4Upgrade linux-hwe-5.15Upgrade linux-aws-fipsUpgrade linux-hwe-5.4Upgrade linux-intel-iotgUpgrade linux-gkeUpgrade linux-gkeop-5.15Upgrade linux-ibmUpgrade linux-xilinx-zynqmp | Nov 19, 2024 | Aug 21, 2024 |
| Vmware Photon_os | — | Use 'tdnf update' to upgrade all packages to the latest version. | May 27, 2026 | Aug 21, 2024 |
Prioritise with Active Threat Intelligence
With curated Threat Intelligence, you can see which vulnerabilities truly put you at risk, prioritize what matters most, and act before attackers do.
Explore Intelligence Hub