Description: Use-After-Free in ath9k_htc_probe_device() could cause an escalation of privileges References: https://bugzilla.redhat.com/show_bug.cgi?id=2084125 https://lore.kernel.org/lkml/87ilqc7jv9.fsf@kernel.org/t/ https://lore.kernel.org/lkml/f158608e209a6f45c76ec856474a796df93d9dcf.1652553719.git.paskripkin@gmail.com/T/#u https://lore.kernel.org/lkml/d57bbedc857950659bfacac0ab48790c1eda00c8.1655145743.git.paskripkin@gmail.com/ Notes: bwh> The patch says it fixes commit fb9987d0f748 "ath9k_htc: Support for bwh> AR9271 chipset." i.e. when the driver was added in 2.6.35. carnil> Fixed as well in 5.18.18 for 5.18.y and 5.19.2 for 5.19.y. Bugs: upstream: released (6.0-rc1) [0ac4827f78c7ffe8eef074bc010e7e34bc22f533] 5.10-upstream-stable: released (5.10.137) [eccd7c3e2596b574241a7670b5b53f5322f470e5] 4.19-upstream-stable: released (4.19.256) [ab7a0ddf5f1cdec63cb21840369873806fc36d80] 4.9-upstream-stable: needed sid: released (5.19.6-1) 5.10-bullseye-security: released (5.10.140-1) 4.19-buster-security: released (4.19.260-1) 4.9-stretch-security: needed