Goal Reached Thanks to every supporter — we hit 100%!

Goal: 1000 CNY · Raised: 1336 CNY

100%

CVE-2022-48636— s390/dasd: fix Oops in dasd_alias_get_start_dev due to missing pavgroup

CVSS 7.8 · High EPSS 0.24% · P15

Possible ATT&CK Techniques 1AI

T1053 · Scheduled Task/Job

Affected Version Matrix 18

VendorProductVersion RangeStatus
LinuxLinux8e09f21574ea3028d5629e5de759e0b196c690c5< d86b4267834e6d4af62e3073e48166e349ab1b70affected
8e09f21574ea3028d5629e5de759e0b196c690c5< 49f401a98b318761ca2e15d4c7869a20043fbed4affected
8e09f21574ea3028d5629e5de759e0b196c690c5< aaba5ff2742043705bc4c02fd0b2b246e2e16da1affected
8e09f21574ea3028d5629e5de759e0b196c690c5< 2e473351400e3dd66f0b71eddcef82ee45a584c1affected
8e09f21574ea3028d5629e5de759e0b196c690c5< f5fcc9d6d71d9ff7fdbdd4b89074e6e24fffc20baffected
8e09f21574ea3028d5629e5de759e0b196c690c5< d3a67c21b18f33c79382084af556557c442f12a6affected
8e09f21574ea3028d5629e5de759e0b196c690c5< 650a2e79d176db753654d3dde88e53a2033036acaffected
8e09f21574ea3028d5629e5de759e0b196c690c5< db7ba07108a48c0f95b74fabbfd5d63e924f992daffected
… +10 more rows
Get alerts for future matching vulnerabilitiesLog in to subscribe

I. Basic Information for CVE-2022-48636

Vulnerability Information

Have questions about the vulnerability? See if Shenlong's analysis helps!
View Shenlong Deep Dive ↗

Although we use advanced large model technology, its output may still contain inaccurate or outdated information.Shenlong tries to ensure data accuracy, but please verify and judge based on the actual situation.

Vulnerability Title
s390/dasd: fix Oops in dasd_alias_get_start_dev due to missing pavgroup
Source: CVE Program / CVE List V5
Vulnerability Description
In the Linux kernel, the following vulnerability has been resolved: s390/dasd: fix Oops in dasd_alias_get_start_dev due to missing pavgroup Fix Oops in dasd_alias_get_start_dev() function caused by the pavgroup pointer being NULL. The pavgroup pointer is checked on the entrance of the function but without the lcu->lock being held. Therefore there is a race window between dasd_alias_get_start_dev() and _lcu_update() which sets pavgroup to NULL with the lcu->lock held. Fix by checking the pavgroup pointer with lcu->lock held.
Source: CVE Program / CVE List V5
CVSS Information
CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H
Source: CVE Program / CVE List V5
Vulnerability Type
N/A
Source: CVE Program / CVE List V5
Vulnerability Title
Linux kernel 安全漏洞
Source: CNNVD (China National Vulnerability Database)
Vulnerability Description
Linux kernel是美国Linux基金会的开源操作系统Linux所使用的内核。 Linux kernel存在安全漏洞,该漏洞源于空指针取消引用。
Source: CNNVD (China National Vulnerability Database)
CVSS Information
N/A
Source: CNNVD (China National Vulnerability Database)
Vulnerability Type
N/A
Source: CNNVD (China National Vulnerability Database)

Affected Products

VendorProductAffected VersionsCPESubscribe
LinuxLinux 8e09f21574ea3028d5629e5de759e0b196c690c5 ~ d86b4267834e6d4af62e3073e48166e349ab1b70 -
LinuxLinux 2.6.25 -

II. Public POCs for CVE-2022-48636

#POC DescriptionSource LinkShenlong Link
AI-Generated POCPremium

No public POC found.

Login to generate AI POC

III. Intelligence Information for CVE-2022-48636

登录查看更多情报信息。

Other References for CVE-2022-48636 (7)

Same Patch Batch · Linux · 2024-04-28 · 40 CVEs total

CVE-2022-486669.8 CRITICALscsi: core: Fix a use-after-free
CVE-2022-486528.8 HIGHice: Fix crash by keep old cfg when update TCs more than queues
CVE-2022-486327.8 HIGHi2c: mlxbf: prevent stack overflow in mlxbf_i2c_smbus_start_transaction()
CVE-2022-486377.8 HIGHbnxt: prevent skb UAF after handing over to PTP worker
CVE-2022-486587.5 HIGHmm: slub: fix flush_cpu_slab()/__free_slab() invocations in task context.
CVE-2022-486657.1 HIGHexfat: fix overflow for large capacity partition
CVE-2022-486547.1 HIGHnetfilter: nfnetlink_osf: fix possible bogus match in nf_osf_find()
CVE-2022-48645net: enetc: deny offload of tc-based TSN features on VF interfaces
CVE-2022-48649mm/slab_common: fix possible double free of kmem_cache
CVE-2022-48644net/sched: taprio: avoid disabling offload when it was never enabled
CVE-2022-48643netfilter: nf_tables: fix nft_counters_enabled underflow at nf_tables_addchain()
CVE-2022-48642netfilter: nf_tables: fix percpu memory leak at nf_tables_addchain()
CVE-2022-48641netfilter: ebtables: fix memory leak when blob is malformed
CVE-2022-48640bonding: fix NULL deref in bond_rr_gen_slave_id
CVE-2022-48639net: sched: fix possible refcount leak in tc_new_tfilter()
CVE-2022-48638cgroup: cgroup_get_from_id() must check the looked-up kn is a directory
CVE-2022-48635fsdax: Fix infinite loop in dax_iomap_rw()
CVE-2022-48634drm/gma500: Fix BUG: sleeping function called from invalid context errors
CVE-2022-48633drm/gma500: Fix WARN_ON(lock->magic != lock) error
CVE-2022-48631ext4: fix bug in extents parsing when eh_entries == 0 and eh_depth > 0

Showing top 20 of 40 CVEs. View all on vendor page &rarr; →

IV. Related Vulnerabilities

V. Comments for CVE-2022-48636

No comments yet


Leave a comment