First published: Wed Jul 27 2022(Updated: )
An issue was discovered in the Linux kernel through 5.18.14. xfrm_expand_policies in net/xfrm/xfrm_policy.c can cause a refcount to be dropped twice.
Credit: cve@mitre.org
Affected Software | Affected Version | How to fix |
---|---|---|
redhat/kernel | <5.19 | 5.19 |
Linux Kernel | <=5.18.14 | |
Debian Linux | =10.0 | |
Debian Linux | =11.0 | |
All of | ||
NetApp AFF A700s Firmware | ||
NetApp A700 | ||
NetApp Active IQ Unified Manager for VMware vSphere | ||
NetApp E-Series SANtricity OS Controller | >=11.0<=11.50.2 | |
NetApp Bootstrap OS | ||
All of | ||
NetApp AFF 8300 Firmware | ||
NetApp AFF 8300 | ||
All of | ||
NetApp FAS8300 | ||
NetApp FAS8300 | ||
All of | ||
NetApp AFF 8700 | ||
NetApp AFF 8700 | ||
All of | ||
NetApp FAS8700 Firmware | ||
NetApp FAS8700 | ||
All of | ||
NetApp AFF A400 | ||
NetApp AFF A400 | ||
All of | ||
NetApp FAS A400 | ||
NetApp FAS A400 | ||
All of | ||
NetApp A250 Firmware | ||
NetApp A250 Firmware | ||
All of | ||
NetApp FAS A250 | ||
NetApp FAS A250 | ||
All of | ||
NetApp FAS500F Firmware | ||
NetApp FAS500F Firmware | ||
All of | ||
NetApp FAS 500F Firmware | ||
NetApp AFF 500F Firmware | ||
All of | ||
NetApp H300S Firmware | ||
NetApp H300S Firmware | ||
All of | ||
NetApp H500e Firmware | ||
NetApp H500e Firmware | ||
All of | ||
NetApp H700S | ||
NetApp H700S | ||
All of | ||
NetApp H410S | ||
NetApp H410S Firmware | ||
All of | ||
NetApp H410C | ||
NetApp H410C Firmware | ||
All of | ||
NetApp H610C | ||
NetApp H610C Firmware | ||
All of | ||
NetApp HCI H610S Firmware | ||
NetApp H610S Firmware | ||
All of | ||
NetApp H615C | ||
NetApp H615C | ||
NetApp AFF A700s Firmware | ||
NetApp A700 | ||
NetApp AFF 8300 Firmware | ||
NetApp AFF 8300 | ||
NetApp FAS8300 | ||
NetApp FAS8300 | ||
NetApp AFF 8700 | ||
NetApp AFF 8700 | ||
NetApp FAS8700 Firmware | ||
NetApp FAS8700 | ||
NetApp AFF A400 | ||
NetApp AFF A400 | ||
NetApp FAS A400 | ||
NetApp FAS A400 | ||
NetApp A250 Firmware | ||
NetApp A250 Firmware | ||
NetApp FAS A250 | ||
NetApp FAS A250 | ||
NetApp FAS500F Firmware | ||
NetApp FAS500F Firmware | ||
NetApp FAS 500F Firmware | ||
NetApp AFF 500F Firmware | ||
NetApp H300S Firmware | ||
NetApp H300S Firmware | ||
NetApp H500e Firmware | ||
NetApp H500e Firmware | ||
NetApp H700S | ||
NetApp H700S | ||
NetApp H410S | ||
NetApp H410S Firmware | ||
NetApp H410C | ||
NetApp H410C Firmware | ||
NetApp H610C | ||
NetApp H610C Firmware | ||
NetApp HCI H610S Firmware | ||
NetApp H610S Firmware | ||
NetApp H615C | ||
NetApp H615C | ||
debian/linux | 5.10.223-1 5.10.234-1 6.1.129-1 6.1.128-1 6.12.20-1 6.12.21-1 |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
The severity of CVE-2022-36879 is classified as high due to potential memory corruption issues.
To fix CVE-2022-36879, update the Linux kernel to version 5.19 or higher.
CVE-2022-36879 affects Linux kernel versions up to 5.18.14 across various distributions.
Yes, CVE-2022-36879 can potentially lead to remote code execution due to improper handling of reference counts.
There are no effective workarounds for CVE-2022-36879 other than upgrading to a patched kernel version.