cbcvebase.
CVE-2022-48626
published 2024-02-26

CVE-2022-48626: In the Linux kernel, the following vulnerability has been resolved: moxart: fix potential use-after-free on remove path It was reported that the mmc host…

PriorityP338high7.8CVSS 3.1
AVLACLPRLUINSUCHIHAH
EPSS
0.31%
23.4th percentile
In the Linux kernel, the following vulnerability has been resolved: moxart: fix potential use-after-free on remove path It was reported that the mmc host structure could be accessed after it was freed in moxart_remove(), so fix this by saving the base register of the device and using it instead of the pointer dereference.

Affected

20 ranges
VendorProductVersion rangeFixed in
debianlinux< linux 5.16.10-1 (bookworm)linux 5.16.10-1 (bookworm)
linuxlinux
linuxlinux>= 1b66e94e6b9995323190f31c51d8e1a6f516627e < f5dc193167591e88797262ec78515a0cbe79ff5ff5dc193167591e88797262ec78515a0cbe79ff5f
linuxlinux>= 1b66e94e6b9995323190f31c51d8e1a6f516627e < e6f580d0b3349646d4ee1ce0057eb273e8fb7e2ee6f580d0b3349646d4ee1ce0057eb273e8fb7e2e
linuxlinux>= 1b66e94e6b9995323190f31c51d8e1a6f516627e < 9c25d5ff1856b91bd4365e813f566cb59aaa95529c25d5ff1856b91bd4365e813f566cb59aaa9552
linuxlinux>= 1b66e94e6b9995323190f31c51d8e1a6f516627e < 3a0a7ec5574b510b067cfc734b8bdb6564b31d4e3a0a7ec5574b510b067cfc734b8bdb6564b31d4e
linuxlinux>= 1b66e94e6b9995323190f31c51d8e1a6f516627e < be93028d306dac9f5b59ebebd9ec7abcfc69c156be93028d306dac9f5b59ebebd9ec7abcfc69c156
linuxlinux>= 1b66e94e6b9995323190f31c51d8e1a6f516627e < af0e6c49438b1596e4be8a267d218a0c88a42323af0e6c49438b1596e4be8a267d218a0c88a42323
linuxlinux>= 1b66e94e6b9995323190f31c51d8e1a6f516627e < 7f901d53f120d1921f84f7b9b118e87e94b403c57f901d53f120d1921f84f7b9b118e87e94b403c5
linuxlinux>= 1b66e94e6b9995323190f31c51d8e1a6f516627e < bd2db32e7c3e35bd4d9b8bbff689434a50893546bd2db32e7c3e35bd4d9b8bbff689434a50893546
linuxlinux_kernel>= 0 < 5.16.10-15.16.10-1
linuxlinux_kernel>= 0 < 5.16.10-15.16.10-1
linuxlinux_kernel>= 0 < 5.16.10-15.16.10-1
linuxlinux_kernel>= 3.16 < 4.9.3014.9.301
linuxlinux_kernel>= 4.10 < 4.14.2664.14.266
linuxlinux_kernel>= 4.15 < 4.19.2294.19.229
linuxlinux_kernel>= 4.20 < 5.4.1795.4.179
linuxlinux_kernel>= 5.11 < 5.15.235.15.23
linuxlinux_kernel>= 5.16 < 5.16.95.16.9
linuxlinux_kernel>= 5.5 < 5.10.1005.10.100

CVSS provenance

nvdv3.17.8HIGHCVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H
osv7.8HIGH
vendor_debian7.8HIGH
vendor_redhat7.8HIGH
Stop checking back — get the weekly exploitation signal.

Every Monday: what got weaponized or added to CISA KEV in the last seven days — each CVE cross-linked to its PoC, Nuclei template, and detection rule. Free, one email a week, unsubscribe in one click.