Impact
During the probe phase of the ALSA 6fire driver, a pending USB Request Block (URB) was not freed when an error occurred, resulting in a dangling pointer. This use‑after‑free could allow a local attacker to cause a kernel crash or potentially execute arbitrary code with kernel privileges, compromising confidentiality, integrity, and availability of the system.
Affected Systems
Linux kernel, specifically the ALSA 6fire driver. No specific kernel versions are listed, so any release lacking the patch is potentially affected.
Risk and Exploitability
The CVSS score of 5.5 reflects moderate severity, and the EPSS score of < 1% indicates a low likelihood of exploitation. It is not listed in CISA’s KEV catalog, suggesting no confirmed exploit activity to date. Exploitation likely requires local access to the affected machine and the presence of a 6fire device, and would result in a denial of service or privilege escalation within the kernel execution context.
OpenCVE Enrichment
Debian DSA