← Zuruck zu CVEs
CVE-2022-28390
HIGH7.8
Beschreibung
ems_usb_start_xmit in drivers/net/can/usb/ems_usb.c in the Linux kernel through 5.17.1 has a double free.
CVE Details
CVSS v3.1 Bewertung7.8
SchweregradHIGH
CVSS VektorCVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H
AngriffsvektorLOCAL
KomplexitatLOW
Erforderliche PrivilegienLOW
BenutzerinteraktionNONE
Veroffentlicht4/3/2022
Zuletzt geandert6/25/2025
Quellenvd
Honeypot-Sichtungen0
Betroffene Produkte
debian:debian_linuxfedoraproject:fedoralinux:linux_kernelnetapp:hci_baseboard_management_controller
Schwachen (CWE)
CWE-415
Referenzen
https://lists.fedoraproject.org/archives/list/package-announce%40lists.fedoraproject.org/message/6IHHC455LMSJNG4CSZ5CEAHYWY2DE5YW/(cve@mitre.org)
https://lists.fedoraproject.org/archives/list/package-announce%40lists.fedoraproject.org/message/LAWC35TO642FOP3UCA3C6IF7NAUFOVZ6/(cve@mitre.org)
https://lists.fedoraproject.org/archives/list/package-announce%40lists.fedoraproject.org/message/XFMPUI3WI4U2F7ONHRW36WDY4ZE7LGGT/(cve@mitre.org)
https://security.netapp.com/advisory/ntap-20220513-0001/(cve@mitre.org)
https://www.debian.org/security/2022/dsa-5127(cve@mitre.org)
https://www.debian.org/security/2022/dsa-5173(cve@mitre.org)
https://github.com/torvalds/linux/commit/c70222752228a62135cee3409dccefd494a24646(af854a3a-2127-422b-91ae-364da2661108)
https://lists.debian.org/debian-lts-announce/2022/07/msg00000.html(af854a3a-2127-422b-91ae-364da2661108)
https://lists.fedoraproject.org/archives/list/package-announce%40lists.fedoraproject.org/message/6IHHC455LMSJNG4CSZ5CEAHYWY2DE5YW/(af854a3a-2127-422b-91ae-364da2661108)
https://lists.fedoraproject.org/archives/list/package-announce%40lists.fedoraproject.org/message/LAWC35TO642FOP3UCA3C6IF7NAUFOVZ6/(af854a3a-2127-422b-91ae-364da2661108)
https://lists.fedoraproject.org/archives/list/package-announce%40lists.fedoraproject.org/message/XFMPUI3WI4U2F7ONHRW36WDY4ZE7LGGT/(af854a3a-2127-422b-91ae-364da2661108)
https://security.netapp.com/advisory/ntap-20220513-0001/(af854a3a-2127-422b-91ae-364da2661108)
https://www.debian.org/security/2022/dsa-5127(af854a3a-2127-422b-91ae-364da2661108)
https://www.debian.org/security/2022/dsa-5173(af854a3a-2127-422b-91ae-364da2661108)
IOC Korrelationen
Keine Korrelationen erfasst
This product uses data from the NVD API but is not endorsed or certified by the NVD.