First published: Wed Aug 07 2019(Updated: )
In the Linux kernel before 4.16.4, a double free vulnerability in the f_midi_set_alt function of drivers/usb/gadget/function/f_midi.c in the f_midi driver may allow attackers to cause a denial of service or possibly have unspecified other impact.
Credit: cve@mitre.org cve@mitre.org
Affected Software | Affected Version | How to fix |
---|---|---|
Linux Linux kernel | >=4.4<4.4.190 | |
Linux Linux kernel | >=4.5<4.9.96 | |
Linux Linux kernel | >=4.10<4.14.36 | |
Linux Linux kernel | >=4.15.0<4.16.4 | |
Google Android | ||
debian/linux | 5.10.223-1 5.10.226-1 6.1.115-1 6.1.119-1 6.11.10-1 6.12.5-1 |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
CVE-2018-20961 is a double free vulnerability in the Linux kernel before version 4.16.4.
CVE-2018-20961 may allow attackers to cause a denial of service or possibly have other unspecified impacts on the Linux kernel before version 4.16.4.
CVE-2018-20961 affects various versions of the Linux kernel including 4.15.0-1053.57, 4.17~, and 4.4.0-1127.135.
To fix the CVE-2018-20961 vulnerability, update your Linux kernel to version 4.16.4 or later.
You can find more information about CVE-2018-20961 in the Linux kernel ChangeLog-4.16.4, the git.kernel.org commit, and the GitHub commit.