An issue was discovered in the Linux kernel before 4.14.11. A double free may be caused by the function allocate_trace_buffer in the file kernel/trace/trace.c.
The product calls free() twice on the same memory address.
Link | Tags |
---|---|
https://cdn.kernel.org/pub/linux/kernel/v4.x/ChangeLog-4.14.11 | mailing list |
https://git.kernel.org/pub/scm/linux/kernel/git/torvalds/linux.git/commit/?id=4397f04575c44e1440ec2e49b6302785c95fd2f8 | mailing list patch |
http://lists.opensuse.org/opensuse-security-announce/2019-10/msg00037.html | mailing list third party advisory vendor advisory |
http://lists.opensuse.org/opensuse-security-announce/2019-10/msg00036.html | mailing list third party advisory vendor advisory |