Acknowledged
Created: Oct 31, 2025
Updated: Nov 4, 2025
Found In Version: 10.23.30.1
Severity: Standard
Applicable for: Wind River Linux LTS 23
Component/s: Kernel
In the Linux kernel, the following vulnerability has been resolved:[EOL][EOL]usb: gadget: f_rndis: Refactor bind path to use __free()[EOL][EOL]After an bind/unbind cycle, the rndis->notify_req is left stale. If a[EOL]subsequent bind fails, the unified error label attempts to free this[EOL]stale request, leading to a NULL pointer dereference when accessing[EOL]ep->ops->free_request.[EOL][EOL]Refactor the error handling in the bind path to use the __free()[EOL]automatic cleanup mechanism.