An issue was discovered in the Linux kernel before 5.0. The function _mdiobusregister() in drivers/net/phy/mdiobus.c calls putdevice(), which will trigger a fixedmdiobus_init use-after-free. This will cause a denial of service.
{ "urgency": "not yet assigned" }