Bug 1204404 - (CVE-2022-3544) VUL-0: CVE-2022-3544: kernel-source,kernel-source-rt,kernel-source-azure: memory leak in damon_sysfs_add_target()
(CVE-2022-3544)
VUL-0: CVE-2022-3544: kernel-source,kernel-source-rt,kernel-source-azure: mem...
Status: RESOLVED INVALID
Classification: Novell Products
Product: SUSE Security Incidents
Classification: Novell Products
Component: Incidents
unspecified
Other Other
: P5 - None : Normal
: ---
Assigned To: Kernel Bugs
Security Team bot
https://smash.suse.de/issue/345385/
:
Depends on:
Blocks:
  Show dependency treegraph
 
Reported: 2022-10-18 07:29 UTC by Carlos López
Modified: 2022-10-18 07:31 UTC (History)
1 user (show)

See Also:
Found By: Security Response Team
Services Priority:
Business Priority:
Blocker: ---
Marketing QA Status: ---
IT Deployment: ---


Attachments

Note You need to log in before you can comment on or make changes to this bug.
Description Carlos López 2022-10-18 07:29:18 UTC
CVE-2022-3544

A vulnerability, which was classified as problematic, was found in Linux Kernel.
Affected is the function damon_sysfs_add_target of the file mm/damon/sysfs.c of
the component Netfilter. The manipulation leads to memory leak. It is
recommended to apply a patch to fix this issue. The identifier of this
vulnerability is VDB-211044.

References:
http://web.nvd.nist.gov/view/vuln/detail?vulnId=CVE-2022-3544
https://www.cve.org/CVERecord?id=CVE-2022-3544
https://git.kernel.org/pub/scm/linux/kernel/git/netfilter/nf-next.git/commit/?id=1c8e2349f2d033f634d046063b704b2ca6c46972
https://vuldb.com/?id.211044
Comment 1 Carlos López 2022-10-18 07:31:39 UTC
Both a61ea561c871 ("mm/damon/sysfs: link DAMON for virtual address spaces monitoring") and the the fix, 1c8e2349f2d0 ("damon/sysfs: fix possible memleak on damon_sysfs_add_target"), are only present in stable and master, so everything is already fixed. Closing.