CVE-2022-28389: Double Free
Last updated 25 April 2025
Other sources
mcbausbstartxmit in drivers/net/can/usb/mcbausb.c in the Linux kernel through 5.17.1 has a double free.
— Launchpad
Affected Software
Remediation
Event History
Frequently Asked Questions
What is the severity of CVE-2022-28389?
CVE-2022-28389 is classified as a high severity vulnerability due to its potential for causing double free errors in the Linux kernel.
How do I fix CVE-2022-28389?
To fix CVE-2022-28389, update to a patched version of the Linux kernel, specifically versions 5.10.223-1, 5.10.226-1, 6.1.119-1, 6.1.123-1, 6.12.9-1, or 6.12.10-1.
What systems are affected by CVE-2022-28389?
CVE-2022-28389 affects various versions of the Linux kernel up to and including 5.17.1 across multiple distributions, including Debian and Fedora.
What types of vulnerabilities does CVE-2022-28389 represent?
CVE-2022-28389 represents a double free vulnerability which can lead to memory corruption and potential system instability.
Is CVE-2022-28389 actively exploited in the wild?
As of now, there is no public information indicating that CVE-2022-28389 is actively exploited in the wild.