In the Linux kernel before 5.3.9, there is a use-after-free bug that can be caused by a malicious USB device in the drivers/nfc/pn533/usb.c driver, aka CID-6af3aa57a098.
| Software | From | Fixed in |
|---|---|---|
| linux / linux_kernel | - | 5.3.9 |
| canonical / ubuntu_linux | 18.04 | 18.04.x |
| canonical / ubuntu_linux | 19.04 | 19.04.x |
| opensuse / leap | 15.1 | 15.1.x |