First published: Fri Nov 25 2022(Updated: )
An issue was discovered in the Linux kernel through 6.0.9. drivers/media/dvb-core/dvb_frontend.c has a race condition that can cause a use-after-free when a device is disconnected.
Credit: cve@mitre.org cve@mitre.org
Affected Software | Affected Version | How to fix |
---|---|---|
Linux Kernel | <=6.0.9 | |
All of | ||
NetApp H410C | ||
NetApp H410C Firmware | ||
All of | ||
NetApp H300S Firmware | ||
NetApp H300S Firmware | ||
All of | ||
NetApp H500e Firmware | ||
NetApp H500e Firmware | ||
All of | ||
NetApp H700S | ||
NetApp H700S | ||
All of | ||
NetApp H410S | ||
NetApp H410S Firmware | ||
NetApp H410C | ||
NetApp H410C Firmware | ||
NetApp H300S Firmware | ||
NetApp H300S Firmware | ||
NetApp H500e Firmware | ||
NetApp H500e Firmware | ||
NetApp H700S | ||
NetApp H700S | ||
NetApp H410S | ||
NetApp H410S Firmware |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
CVE-2022-45885 is a vulnerability discovered in the Linux kernel through version 6.0.9, which can cause a use-after-free when a device is disconnected.
The Linux kernel version up to 6.0.9 and Netapp H410c Firmware are affected by CVE-2022-45885.
CVE-2022-45885 has a severity level of high (7).
To mitigate CVE-2022-45885, consider upgrading to a version of the Linux kernel that is not affected by this vulnerability or apply the necessary patches provided by the vendor.
For more information about CVE-2022-45885, you can refer to the following references: [Reference 1](https://lore.kernel.org/linux-media/20221115131822.6640-1-imv4bel@gmail.com/), [Reference 2](https://lore.kernel.org/linux-media/20221115131822.6640-2-imv4bel@gmail.com/), [Reference 3](https://security.netapp.com/advisory/ntap-20230113-0006/)