A use-after-free flaw was found in the Linux kernel’s PLP Rose functionality in the way a user triggers a race condition by calling bind while simultaneously triggering the rose_bind() function. This flaw allows a local user to crash or potentially escalate their privileges on the system.
| Software | From | Fixed in |
|---|---|---|
| linux / linux_kernel | - | 6.0 |
| linux / linux_kernel | 6.0-rc1 | 6.0-rc1.x |
| fedoraproject / fedora | 36 | 36.x |