Vulnerabilità nel sottosistema USB Gadget del kernel Linux, che consente potenzialmente l'esecuzione di codice
In USB Gadget, the Linux kernel subsystem providing a software interface for creating client USB devices and simulating USB devices, a vulnerability (CVE-2021-39685) was identified that may lead to information leakage from the kernel, crashes, or arbitrary code execution at the kernel level. The attack is carried out by an unprivileged local user through manipulation with various device classes implemented based on the USB Gadget API, such as […]
