Linux kernel是美国Linux基金会的开源操作系统Linux所使用的内核。 Linux kernel 存在安全漏洞,该漏洞源于usb:f_fs模块中发现释放后重用问题。当ffs_func_eps_disable在组合开关过程中被调用,同时用户空间调用ffs_epfile_release,这可能导致在释放读缓冲区后,驱动程序尝试访问已经被释放的内存。
| Vendor | Product | Version Range | Status |
|---|---|---|---|
| Linux | Linux | a9e6f83c2df199187a5248f824f31b6787ae23ae< 32048f4be071f9a6966744243f1786f45bb22dc2 |
affected |
a9e6f83c2df199187a5248f824f31b6787ae23ae< cfe5f6fd335d882bcc829a1c8a7d462a455c626e |
affected | ||
a9e6f83c2df199187a5248f824f31b6787ae23ae< c9fc422c9a43e3d58d246334a71f3390401781dc |
affected | ||
a9e6f83c2df199187a5248f824f31b6787ae23ae< 0042178a69eb77a979e36a50dcce9794a3140ef8 |
affected | ||
a9e6f83c2df199187a5248f824f31b6787ae23ae< 72a8aee863af099d4434314c4536d6c9a61dcf3c |
affected | ||
a9e6f83c2df199187a5248f824f31b6787ae23ae< 3e078b18753669615301d946297bafd69294ad2c |
affected | ||
a9e6f83c2df199187a5248f824f31b6787ae23ae< ebe2b1add1055b903e2acd86b290a85297edc0b3 |
affected | ||
5cd8f6788ff34999dbd4cbec81a6adfc215e1e60 |
affected | ||
| … +10 more rows | |||
Although we use advanced large model technology, its output may still contain inaccurate or outdated information.Shenlong tries to ensure data accuracy, but please verify and judge based on the actual situation.
| # | POC Description | Source Link | Shenlong Link |
|---|
No public POC found.
Login to generate AI POC| CVE-2022-48788 | 9.8 CRITICAL | nvme-rdma: fix possible use-after-free in transport error_recovery work |
| CVE-2022-48789 | 9.8 CRITICAL | nvme-tcp: fix possible use-after-free in transport error_recovery work |
| CVE-2022-48790 | 9.8 CRITICAL | nvme: fix a possible use-after-free in controller reset during load |
| CVE-2022-48851 | 9.8 CRITICAL | staging: gdm724x: fix use after free in gdm_lte_rx() |
| CVE-2022-48829 | 9.1 CRITICAL | NFSD: Fix NFSv3 SETATTR/CREATE's handling of large file sizes |
| CVE-2022-48828 | 9.1 CRITICAL | NFSD: Fix ia_size underflow |
| CVE-2022-48864 | 8.8 HIGH | vdpa/mlx5: add validation for VIRTIO_NET_CTRL_MQ_VQ_PAIRS_SET command |
| CVE-2022-48830 | 8.8 HIGH | can: isotp: fix potential CAN frame reception race in isotp_rcv() |
| CVE-2022-48785 | 8.8 HIGH | ipv6: mcast: use rcu-safe version of ipv6_get_lladdr() |
| CVE-2022-48782 | 8.8 HIGH | mctp: fix use after free |
| CVE-2022-48786 | 7.8 HIGH | vsock: remove vsock from connected table when connect is interrupted by a signal |
| CVE-2024-41008 | 7.8 HIGH | drm/amdgpu: change vm->task_info handling |
| CVE-2022-48791 | 7.8 HIGH | scsi: pm8001: Fix use-after-free for aborted TMF sas_task |
| CVE-2022-48792 | 7.8 HIGH | scsi: pm8001: Fix use-after-free for aborted SSP/STP sas_task |
| CVE-2022-48796 | 7.8 HIGH | iommu: Fix potential use-after-free during probe |
| CVE-2022-48847 | 7.8 HIGH | watch_queue: Fix filter limit check |
| CVE-2022-48801 | 7.8 HIGH | iio: buffer: Fix file related error handling in IIO_BUFFER_GET_FD_IOCTL |
| CVE-2022-48839 | 7.8 HIGH | net/packet: fix slab-out-of-bounds access in packet_recvmsg() |
| CVE-2022-48816 | 7.8 HIGH | SUNRPC: lock against ->sock changing during sysfs read |
| CVE-2022-48821 | 7.8 HIGH | misc: fastrpc: avoid double fput() on failed usercopy |
Showing top 20 of 98 CVEs. View all on vendor page → →
No comments yet