In the Linux kernel before 5.2.10, there is a use-after-free bug that can be caused by a malicious USB device in the drivers/usb/class/cdc-acm.c driver, aka CID-c52873e5a1ef.
| Software | From | Fixed in |
|---|---|---|
| linux / linux_kernel | - | 5.2.10 |
| debian / debian_linux | 8.0 | 8.0.x |
| opensuse / leap | 15.1 | 15.1.x |