In the Linux kernel 4.4 through 5.7.6, usbtest_disconnect in drivers/usb/misc/usbtest.c has a memory leak, aka CID-28ebeb8db770.
Source: https://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2020-15393
Reference (s):
- https://git.kernel.org/pub/scm/linux/kernel/git/tip/tip.git/commit/?id=831eebad70a25f55b5745453ac252d4afe997187
- https://git.kernel.org/pub/scm/linux/kernel/git/torvalds/linux.git/commit/?id=28ebeb8db77035e058a510ce9bd17c2b9a009dba
- https://lkml.org/lkml/2020/6/2/968
- MLIST:[debian-lts-announce] 20200812 [SECURITY] [DLA 2323-1] linux-4.19 new package
- URL: https://lists.debian.org/debian-lts-announce/2020/08/msg00019.html