CVE-2025-40093

usb: gadget: f_ecm: Refactor bind path to use __free()

References

Notes

 carnil> Introduced in da741b8c56d6 ("usb ethernet gadget: split CDC Ethernet
 carnil> function"). Vulnerable versions: 2.6.27.

Bugs

Status

Branch Status
upstream released (6.18-rc1) [42988380ac67c76bb9dff8f77d7ef3eefd50b7b5]
6.18-upstream-stable N/A "Fixed before branching point"
6.17-upstream-stable released (6.17.5) [4630c68bade82f087eaaab22e9a361da2f18d139]
6.12-upstream-stable released (6.12.55) [15b9faf53ba8719700596e7ef78879ce200e8c2e]
6.6-upstream-stable released (6.6.114) [070f341d86cf2c098d63e484a86c7c1d2696a868]
6.1-upstream-stable released (6.1.158) [d3745aaef19198d0c81637a7dd50ef53c4f879b7]
5.10-upstream-stable needed
sid released (6.17.6-1)
6.12-trixie-security released (6.12.57-1)
6.1-bookworm-security released (6.1.158-1)
5.10-bullseye-security needed