In the Linux kernel, the following vulnerability has been resolved: scsi: iscsitcp: Fix UAF during login when accessing the shost ipaddress If during iscsiswtcpsessioncreate() iscsitcpr2tpoolalloc() fails, userspace could be accessing the host's ipaddress attr. If we then free the session via iscsisessionteardown() while userspace is still accessing the session we will hit a use after free bug. Set the tcpswhost->session after we have completed session creation and can no longer fail.