In the Linux kernel before 5.3.7, there is a use-after-free bug that can be caused by a malicious USB device in the drivers/usb/misc/adutux.c driver, aka CID-44efc269db79.
| Software | From | Fixed in |
|---|---|---|
| linux / linux_kernel | - | 5.3.7 |
| debian / debian_linux | 8.0 | 8.0.x |
| opensuse / leap | 15.1 | 15.1.x |