CVE-2024-58093
Linux Linux, linux kernel
In the Linux kernel, the following vulnerability has been resolved: PCI/ASPM: Fix link state exit during switch upstream function removal Before 456d8aa37d0f ("PCI/ASPM: Disable ASPM on MFD function removal to avoid use-after-free"), we would free the ASPM link only after the last function on the bus pertaining to the given link was removed. That was too late. If function 0 is removed before sibling function, link->downstream would point to free'd memory after. After above change, we freed the ASPM parent link state upon any function removal on the bus pertaining to a given link. That is to...
- CVSS
- 7.8
- EPSS
- 0.20% 10.2% percentile
- CISA KEV
- Not listed
- Published
- 2025.04.17