CVE-2024-36894 | Linux Kernel up to 6.6.30/6.8.9 usb aio_cancel use after free (73c05ad46bb4/d74618308232/24729b307eef / Nessus ID 207802)
A vulnerability was found in Linux Kernel up to 6.6.30/6.8.9. It has been rated as critical. This affects the function aio_cancel of the component usb. Performing manipulation results in use after free.
This vulnerability is reported as CVE-2024-36894. The attacker must have access to the local network to execute the attack. No exploit exists.
Upgrading the affected component is advised.