cbcvebase.
CVE-2022-41222
published 2022-09-21

CVE-2022-41222: mm/mremap.c in the Linux kernel before 5.13.3 has a use-after-free via a stale TLB because an rmap lock is not held during a PUD move.

high7CVSS 3.1
AVLACHPRLUINSUCHIHAH
mm/mremap.c in the Linux kernel before 5.13.3 has a use-after-free via a stale TLB because an rmap lock is not held during a PUD move.

Affected

24 ranges
VendorProductVersion rangeFixed in
canonicalubuntu_linux
canonicalubuntu_linux
canonicalubuntu_linux
debiandebian_linux
debianlinux< linux 5.14.6-1 (bookworm)linux 5.14.6-1 (bookworm)
googleandroid
linuxlinux_kernel>= 0 < 5.10.140-15.10.140-1
linuxlinux_kernel>= 0 < 5.14.6-15.14.6-1
linuxlinux_kernel>= 0 < 5.14.6-15.14.6-1
linuxlinux_kernel>= 0 < 5.14.6-15.14.6-1
linuxlinux_kernel>= 0 < 5.4.0-132.1485.4.0-132.148
linuxlinux_kernel>= 0 < 5.4.0-132.1485.4.0-132.148
linuxlinux_kernel>= 0 < 5.15.0-52.585.15.0-52.58
linuxlinux_kernel>= 5.0 < 5.4.2115.4.211
linuxlinux_kernel>= 5.11 < 5.12.185.12.18
linuxlinux_kernel>= 5.13 < 5.13.35.13.3
linuxlinux_kernel>= 5.5 < 5.10.1375.10.137
msrccm1_kernel_5.10.144.1-1_on_cbl_mariner_1.0
netapphci_baseboard_management_controller
netapphci_baseboard_management_controller
netapphci_baseboard_management_controller
netapphci_baseboard_management_controller
netapphci_baseboard_management_controller
paloaltopan-os

CVSS provenance

nvdv3.17.0HIGHCVSS:3.1/AV:L/AC:H/PR:L/UI:N/S:U/C:H/I:H/A:H
osv7.0HIGH