Linux kernel是美国Linux基金会的开源操作系统Linux所使用的内核。 Linux kernel 存在安全漏洞,该漏洞源于iommu模块中发现使用后释放问题。在设备探测失败并释放dev->iommu时,可能会并行运行deferred_probe_work_func并尝试访问dev->iommu->fwspec,导致使用后释放。
| Vendor | Product | Version Range | Status |
|---|---|---|---|
| Linux | Linux | 0c830e6b32826311fc2b9ea1f4679be0f4ef0933< cb86e511e78e796de6947b8f3acca1b7c76fb2ff |
affected |
0c830e6b32826311fc2b9ea1f4679be0f4ef0933< 65ab30f6a6952fa9ee13009862736cf8d110e6e5 |
affected | ||
0c830e6b32826311fc2b9ea1f4679be0f4ef0933< f74fc4b5bd533ea3d30ce47cccb8ef8d21fda85a |
affected | ||
0c830e6b32826311fc2b9ea1f4679be0f4ef0933< b54240ad494300ff0994c4539a531727874381f4 |
affected | ||
5.3 |
affected | ||
< 5.3 |
unaffected | ||
5.10.101≤ 5.10.* |
unaffected | ||
5.15.24≤ 5.15.* |
unaffected | ||
| … +2 more rows | |||
Although we use advanced large model technology, its output may still contain inaccurate or outdated information.Shenlong tries to ensure data accuracy, but please verify and judge based on the actual situation.
| # | POC Description | Source Link | Shenlong Link |
|---|
No public POC found.
Login to generate AI POC| CVE-2022-48790 | 9.8 CRITICAL | nvme: fix a possible use-after-free in controller reset during load |
| CVE-2022-48789 | 9.8 CRITICAL | nvme-tcp: fix possible use-after-free in transport error_recovery work |
| CVE-2022-48788 | 9.8 CRITICAL | nvme-rdma: fix possible use-after-free in transport error_recovery work |
| CVE-2022-48851 | 9.8 CRITICAL | staging: gdm724x: fix use after free in gdm_lte_rx() |
| CVE-2022-48829 | 9.1 CRITICAL | NFSD: Fix NFSv3 SETATTR/CREATE's handling of large file sizes |
| CVE-2022-48828 | 9.1 CRITICAL | NFSD: Fix ia_size underflow |
| CVE-2022-48864 | 8.8 HIGH | vdpa/mlx5: add validation for VIRTIO_NET_CTRL_MQ_VQ_PAIRS_SET command |
| CVE-2022-48830 | 8.8 HIGH | can: isotp: fix potential CAN frame reception race in isotp_rcv() |
| CVE-2022-48782 | 8.8 HIGH | mctp: fix use after free |
| CVE-2022-48785 | 8.8 HIGH | ipv6: mcast: use rcu-safe version of ipv6_get_lladdr() |
| CVE-2022-48839 | 7.8 HIGH | net/packet: fix slab-out-of-bounds access in packet_recvmsg() |
| CVE-2022-48816 | 7.8 HIGH | SUNRPC: lock against ->sock changing during sysfs read |
| CVE-2022-48822 | 7.8 HIGH | usb: f_fs: Fix use-after-free for epfile |
| CVE-2022-48787 | 7.8 HIGH | iwlwifi: fix use-after-free |
| CVE-2022-48786 | 7.8 HIGH | vsock: remove vsock from connected table when connect is interrupted by a signal |
| CVE-2022-48791 | 7.8 HIGH | scsi: pm8001: Fix use-after-free for aborted TMF sas_task |
| CVE-2024-41008 | 7.8 HIGH | drm/amdgpu: change vm->task_info handling |
| CVE-2022-48801 | 7.8 HIGH | iio: buffer: Fix file related error handling in IIO_BUFFER_GET_FD_IOCTL |
| CVE-2022-48847 | 7.8 HIGH | watch_queue: Fix filter limit check |
| CVE-2022-48821 | 7.8 HIGH | misc: fastrpc: avoid double fput() on failed usercopy |
Showing top 20 of 98 CVEs. View all on vendor page → →
No comments yet