cve/2025/CVE-2025-21934.md
2025-09-29 21:09:30 +02:00

1.0 KiB

CVE-2025-21934

Description

In the Linux kernel, the following vulnerability has been resolved:rapidio: fix an API misues when rio_add_net() failsrio_add_net() calls device_register() and fails when device_register()fails. Thus, put_device() should be used rather than kfree(). Add"mport->net = NULL;" to avoid a use after free issue.

POC

Reference

No PoCs from references.

Github