CVE-2022-48654
published 2024-04-28CVE-2022-48654: In the Linux kernel, the following vulnerability has been resolved: netfilter: nfnetlink_osf: fix possible bogus match in nf_osf_find() nf_osf_find()…
PriorityP423medium5.5CVSS 3.1
AVLACLPRLUINSUCHINAN
EPSS
0.24%
15.7th percentile
In the Linux kernel, the following vulnerability has been resolved:
netfilter: nfnetlink_osf: fix possible bogus match in nf_osf_find()
nf_osf_find() incorrectly returns true on mismatch, this leads to
copying uninitialized memory area in nft_osf which can be used to leak
stale kernel stack data to userspace.
Affected
15 ranges
| Vendor | Product | Version range | Fixed in |
|---|---|---|---|
| debian | linux | < linux 6.0.2-1 (bookworm) | linux 6.0.2-1 (bookworm) |
| linux | linux | — | — |
| linux | linux | >= 22c7652cdaa8cd33ce78bacceb4e826a3f795873 < 721ea8ac063d70c2078c4e762212705de6151764 | 721ea8ac063d70c2078c4e762212705de6151764 |
| linux | linux | >= 22c7652cdaa8cd33ce78bacceb4e826a3f795873 < 5d75fef3e61e797fab5c3fbba88caa74ab92ad47 | 5d75fef3e61e797fab5c3fbba88caa74ab92ad47 |
| linux | linux | >= 22c7652cdaa8cd33ce78bacceb4e826a3f795873 < 816eab147e5c6f6621922b8515ad9010ceb1735e | 816eab147e5c6f6621922b8515ad9010ceb1735e |
| linux | linux | >= 22c7652cdaa8cd33ce78bacceb4e826a3f795873 < 633c81c0449663f57d4138326d036dc6cfad674e | 633c81c0449663f57d4138326d036dc6cfad674e |
| linux | linux | >= 22c7652cdaa8cd33ce78bacceb4e826a3f795873 < 559c36c5a8d730c49ef805a72b213d3bba155cc8 | 559c36c5a8d730c49ef805a72b213d3bba155cc8 |
| linux | linux_kernel | >= 0 < 5.10.148-1 | 5.10.148-1 |
| linux | linux_kernel | >= 0 < 6.0.2-1 | 6.0.2-1 |
| linux | linux_kernel | >= 0 < 6.0.2-1 | 6.0.2-1 |
| linux | linux_kernel | >= 0 < 6.0.2-1 | 6.0.2-1 |
| linux | linux_kernel | >= 5.11.0 < 5.15.71 | 5.15.71 |
| linux | linux_kernel | >= 5.16.0 < 5.19.12 | 5.19.12 |
| linux | linux_kernel | >= 5.2.0 < 5.4.215 | 5.4.215 |
| linux | linux_kernel | >= 5.5.0 < 5.10.146 | 5.10.146 |
CVSS provenance
nvdv3.15.5MEDIUMCVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:N/A:N
osv5.5MEDIUM
vendor_debian5.5MEDIUM
vendor_redhat5.5MEDIUM
Stop checking back — get the weekly exploitation signal.
Every Monday: what got weaponized or added to CISA KEV in the last seven days — each CVE cross-linked to its PoC, Nuclei template, and detection rule. Free, one email a week, unsubscribe in one click.
Red Hat
kernel: netfilter: nfnetlink_osf: fix possible bogus match in nf_osf_find()
vendor_redhat·2024-04-28·CVSS 5.5
CVE-2022-48654 [MEDIUM] CWE-908 kernel: netfilter: nfnetlink_osf: fix possible bogus match in nf_osf_find()
kernel: netfilter: nfnetlink_osf: fix possible bogus match in nf_osf_find()
In the Linux kernel, the following vulnerability has been resolved:
netfilter: nfnetlink_osf: fix possible bogus match in nf_osf_find()
nf_osf_find() incorrectly returns true on mismatch, this leads to
copying uninitialized memory area in nft_osf which can be used to leak
stale kernel stack data to userspace.
Package: kernel (Red Hat Enterprise Linux 6) - Not affected
Package: kernel (Red Hat Enterprise Linux 7) - Not affected
Package: kernel-rt (Red Hat Enterprise Linux 7) - Not affected
Package: kernel (Red Hat Enterprise Linux 8) - Not affected
Package: kernel-rt (Red Hat Enterprise Linux 8) - Not affected
Package: kernel (Red Hat Enterprise Linux 9) - Not affected
Package: kernel-rt (Red Hat Enterprise
Debian
CVE-2022-48654: linux - In the Linux kernel, the following vulnerability has been resolved: netfilter: ...
vendor_debian·2022·CVSS 5.5
CVE-2022-48654 [MEDIUM] CVE-2022-48654: linux - In the Linux kernel, the following vulnerability has been resolved: netfilter: ...
In the Linux kernel, the following vulnerability has been resolved: netfilter: nfnetlink_osf: fix possible bogus match in nf_osf_find() nf_osf_find() incorrectly returns true on mismatch, this leads to copying uninitialized memory area in nft_osf which can be used to leak stale kernel stack data to userspace.
Scope: local
bookworm: resolved (fixed in 6.0.2-1)
bullseye: resolved (fixed in 5.10.148-1)
forky: resolved (fixed in 6.0.2-1)
sid: resolved (fixed in 6.0.2-1)
trixie: resolved (fixed in 6.0.2-1)
OSV
CVE-2022-48654: In the Linux kernel, the following vulnerability has been resolved: netfilter: nfnetlink_osf: fix possible bogus match in nf_osf_find() nf_osf_find()
osv·2024-04-28·CVSS 5.5
CVE-2022-48654 [MEDIUM] CVE-2022-48654: In the Linux kernel, the following vulnerability has been resolved: netfilter: nfnetlink_osf: fix possible bogus match in nf_osf_find() nf_osf_find()
In the Linux kernel, the following vulnerability has been resolved: netfilter: nfnetlink_osf: fix possible bogus match in nf_osf_find() nf_osf_find() incorrectly returns true on mismatch, this leads to copying uninitialized memory area in nft_osf which can be used to leak stale kernel stack data to userspace.
GHSA
GHSA-wjwq-gx2g-vrjg: In the Linux kernel, the following vulnerability has been resolved:
netfilter: nfnetlink_osf: fix possible bogus match in nf_osf_find()
nf_osf_find(
ghsa_unreviewed·2024-04-28
CVE-2022-48654 [MEDIUM] CWE-908 GHSA-wjwq-gx2g-vrjg: In the Linux kernel, the following vulnerability has been resolved:
netfilter: nfnetlink_osf: fix possible bogus match in nf_osf_find()
nf_osf_find(
In the Linux kernel, the following vulnerability has been resolved:
netfilter: nfnetlink_osf: fix possible bogus match in nf_osf_find()
nf_osf_find() incorrectly returns true on mismatch, this leads to
copying uninitialized memory area in nft_osf which can be used to leak
stale kernel stack data to userspace.
No detection rules found.
No public exploits indexed.
https://git.kernel.org/stable/c/559c36c5a8d730c49ef805a72b213d3bba155cc8https://git.kernel.org/stable/c/5d75fef3e61e797fab5c3fbba88caa74ab92ad47https://git.kernel.org/stable/c/633c81c0449663f57d4138326d036dc6cfad674ehttps://git.kernel.org/stable/c/721ea8ac063d70c2078c4e762212705de6151764https://git.kernel.org/stable/c/816eab147e5c6f6621922b8515ad9010ceb1735ehttps://git.kernel.org/stable/c/559c36c5a8d730c49ef805a72b213d3bba155cc8https://git.kernel.org/stable/c/5d75fef3e61e797fab5c3fbba88caa74ab92ad47https://git.kernel.org/stable/c/633c81c0449663f57d4138326d036dc6cfad674ehttps://git.kernel.org/stable/c/721ea8ac063d70c2078c4e762212705de6151764https://git.kernel.org/stable/c/816eab147e5c6f6621922b8515ad9010ceb1735e
2024-04-28
Published