GHSA-93h6-v44h-45xxHighCVSS 7.5
In the Linux kernel, the following vulnerability has been resolved: thunderbolt: Set tb-...
🔗 CVE IDs covered (1)
📋 Description
In the Linux kernel, the following vulnerability has been resolved:
thunderbolt: Set tb->root_switch to NULL when domain is stopped
Similarly what we do with the firmware connection manager. This makes tb_xdp_handle_request() return error to the remote host. However, we need to make sure we keep the uuid alive so that we can reply until the whole domain is released.
🔗 References (9)
- https://nvd.nist.gov/vuln/detail/CVE-2026-97508
- https://git.kernel.org/stable/c/99f019d2e9eb79adc485fef8aa8ada2cd0c843e9
- https://git.kernel.org/stable/c/e56249d8a68e712f3b60e1f3fdbb5b4fea146468
- https://git.kernel.org/stable/c/f06e9fbae78a51832211b4495a19412c7d49ecb4
- https://git.kernel.org/stable/c/54ad3415cc211ca0d64ae1bf3234d6eb5c6aedd0
- https://git.kernel.org/stable/c/66b0fe27e277713c2b9f3c452c76330ed0bd7eaf
- https://git.kernel.org/stable/c/83d1af5b1b6e6c96ffa633ca2c9a77f6f4c93efa
- https://git.kernel.org/stable/c/d9a638e7bc87e0e6fe3a75517ac481e72fc0058c
- https://github.com/advisories/GHSA-93h6-v44h-45xx