cbcvebase.
CVE-2022-48709
published 2024-05-21

CVE-2022-48709: In the Linux kernel, the following vulnerability has been resolved: ice: switch: fix potential memleak in ice_add_adv_recipe() When ice_add_special_words()…

PriorityP416medium5.5CVSS 3.1
AVLACLPRLUINSUCNINAH
EPSS
0.21%
10.8th percentile
In the Linux kernel, the following vulnerability has been resolved: ice: switch: fix potential memleak in ice_add_adv_recipe() When ice_add_special_words() fails, the 'rm' is not released, which will lead to a memory leak. Fix this up by going to 'err_unroll' label. Compile tested only.

Affected

9 ranges
VendorProductVersion rangeFixed in
debianlinux< linux 6.1.12-1 (bookworm)linux 6.1.12-1 (bookworm)
linuxlinux
linuxlinux>= 8b032a55c1bd5d47527263445aba9dc45144b00d < 47f4ff6f23f00f5501ff2d7054c1a37c170a7aa047f4ff6f23f00f5501ff2d7054c1a37c170a7aa0
linuxlinux>= 8b032a55c1bd5d47527263445aba9dc45144b00d < 4a606ce68426c88ff2563382b33cc34f3485fe574a606ce68426c88ff2563382b33cc34f3485fe57
linuxlinux_kernel
linuxlinux_kernel>= 0 < 6.1.12-16.1.12-1
linuxlinux_kernel>= 0 < 6.1.12-16.1.12-1
linuxlinux_kernel>= 0 < 6.1.12-16.1.12-1
linuxlinux_kernel>= 5.16 < 6.1.126.1.12

CVSS provenance

nvdv3.15.5MEDIUMCVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:N/I:N/A:H
osv5.5MEDIUM
vendor_debian5.5MEDIUM
vendor_redhat5.5MEDIUM
Stop checking back — get the weekly exploitation signal.

Every Monday: what got weaponized or added to CISA KEV in the last seven days — each CVE cross-linked to its PoC, Nuclei template, and detection rule. Free, one email a week, unsubscribe in one click.