Bug 1205760 - (CVE-2022-45886) VUL-0: CVE-2022-45886: kernel-source-rt,kernel-source,kernel-source-azure: UaF in drivers/media/dvb-core/dvb_net.c
(CVE-2022-45886)
VUL-0: CVE-2022-45886: kernel-source-rt,kernel-source,kernel-source-azure: Ua...
Status: NEW
Classification: Novell Products
Product: SUSE Security Incidents
Classification: Novell Products
Component: Incidents
unspecified
Other Other
: P3 - Medium : Normal
: ---
Assigned To: Takashi Iwai
Security Team bot
https://smash.suse.de/issue/348921/
CVSSv3.1:SUSE:CVE-2022-45886:4.1:(AV:...
:
Depends on: CVE-2022-45885
Blocks:
  Show dependency treegraph
 
Reported: 2022-11-25 10:55 UTC by Hu
Modified: 2023-03-24 13:02 UTC (History)
6 users (show)

See Also:
Found By: Security Response Team
Services Priority:
Business Priority:
Blocker: ---
Marketing QA Status: ---
IT Deployment: ---


Attachments

Note You need to log in before you can comment on or make changes to this bug.
Description Hu 2022-11-25 10:55:31 UTC
CVE-2022-45886

An issue was discovered in the Linux kernel through 6.0.9.
drivers/media/dvb-core/dvb_net.c has a .disconnect versus dvb_device_open race
condition that leads to a use-after-free.

References:
http://web.nvd.nist.gov/view/vuln/detail?vulnId=CVE-2022-45886
https://www.cve.org/CVERecord?id=CVE-2022-45886
https://lore.kernel.org/linux-media/20221115131822.6640-3-imv4bel@gmail.com/
https://lore.kernel.org/linux-media/20221115131822.6640-1-imv4bel@gmail.com/
Comment 2 Takashi Iwai 2022-11-25 11:33:45 UTC
Let's wait for the upstream review and acceptance.
Comment 5 Takashi Iwai 2023-02-01 12:34:28 UTC
I pinged the reporter for verifying with the latest tree in a few weeks ago, but no reply, so far.