CVE-2025-40092

usb: gadget: f_ncm: Refactor bind path to use __free()

References

Notes

 carnil> Introduced in 9f6ce4240a2b ("usb: gadget: f_ncm.c added"). Vulnerable versions:
 carnil> 2.6.38.

Bugs

Status

Branch Status
upstream released (6.18-rc1) [75a5b8d4ddd4eb6b16cb0b475d14ff4ae64295ef]
6.18-upstream-stable N/A "Fixed before branching point"
6.17-upstream-stable released (6.17.5) [ed78f4d6079d872432b1ed54f155ef61965d3137]
6.12-upstream-stable released (6.12.55) [d3fe7143928d8dfa2ec7bac9f906b48bc75b98ee]
6.6-upstream-stable released (6.6.114) [1cde4516295a030cb8ab4c93114ca3b6c3c6a1e2]
6.1-upstream-stable released (6.1.158) [f37de8dec6a4c379b4b8486003a1de00ff8cff3b]
5.10-upstream-stable needed
sid released (6.17.6-1)
6.12-trixie-security released (6.12.57-1)
6.1-bookworm-security released (6.1.158-1)
5.10-bullseye-security needed