A double-free flaw was found in the Linux kernel’s NTFS3 subsystem in how a user triggers remount and umount simultaneously. This flaw allows a local user to crash or potentially escalate their privileges on the system.
The product does not properly "clean up" and remove temporary or supporting resources after they have been used.
The product calls free() twice on the same memory address.
Link | Tags |
---|---|
https://bugzilla.redhat.com/show_bug.cgi?id=2127927 | third party advisory issue tracking |