In the Linux kernel before 5.3.6, there is a use-after-free bug that can be caused by a malicious USB device in the drivers/net/ieee802154/atusb.c driver, aka CID-7fd25e6fc035.
| Software | From | Fixed in |
|---|---|---|
| linux / linux_kernel | - | 5.3.6 |
| debian / debian_linux | 8.0 | 8.0.x |
| opensuse / leap | 15.1 | 15.1.x |