In the Linux kernel, the following vulnerability has been resolved:
scsi: bfa: Double-free fix
When the bfadimprobe() function fails during initialization, the memory pointed to by bfad->im is freed without setting bfad->im to NULL.
Subsequently, during driver uninstallation, when the state machine enters the bfadsmstopping state and calls the bfadimprobe_undo() function, it attempts to free the memory pointed to by bfad->im again, thereby triggering a double-free vulnerability.
Set bfad->im to NULL if probing fails.