Overview
About vulnerability
In the Linux kernel, the following vulnerability has been resolved:
mtd: virt-concat: free duplicate generated name
Every MTD registration runs mtd_virt_concat_create_join(). Once a virtual concat has already been registered, the function builds the same name again and takes the equal-name branch. That branch skips to the next item without freeing the newly allocated string.
Free the temporary name before continuing.
Details
- Affected product:
- Debian 10 ELS
- Affected packages:
- linux @ 4.19.0