cbcvebase.
CVE-2022-48722
published 2024-06-20

CVE-2022-48722: In the Linux kernel, the following vulnerability has been resolved: net: ieee802154: ca8210: Stop leaking skb's Upon error the ieee802154_xmit_complete()…

PriorityP417medium5.5CVSS 3.1
AVLACLPRLUINSUCNINAH
EPSS
0.22%
13.1th percentile
In the Linux kernel, the following vulnerability has been resolved: net: ieee802154: ca8210: Stop leaking skb's Upon error the ieee802154_xmit_complete() helper is not called. Only ieee802154_wake_queue() is called manually. We then leak the skb structure. Free the skb structure upon error before returning.

Affected

20 ranges
VendorProductVersion rangeFixed in
debianlinux< linux 5.16.10-1 (bookworm)linux 5.16.10-1 (bookworm)
linuxlinux
linuxlinux>= ded845a781a578dfb0b5b2c138e5a067aa3b1242 < a1c277b0ed2a13e7de923b5f03bc23586eceb851a1c277b0ed2a13e7de923b5f03bc23586eceb851
linuxlinux>= ded845a781a578dfb0b5b2c138e5a067aa3b1242 < d6a44feb2f28d71a7e725f72d09c97c81561cd9ad6a44feb2f28d71a7e725f72d09c97c81561cd9a
linuxlinux>= ded845a781a578dfb0b5b2c138e5a067aa3b1242 < 6f38d3a6ec11c2733b1c641a46a2a2ecec57be086f38d3a6ec11c2733b1c641a46a2a2ecec57be08
linuxlinux>= ded845a781a578dfb0b5b2c138e5a067aa3b1242 < 78b3f20c17cbcb7645bfa63f2ca0e11b53c09d5678b3f20c17cbcb7645bfa63f2ca0e11b53c09d56
linuxlinux>= ded845a781a578dfb0b5b2c138e5a067aa3b1242 < 94cd597e20ed4acedb8f15f029d92998b011cb1a94cd597e20ed4acedb8f15f029d92998b011cb1a
linuxlinux>= ded845a781a578dfb0b5b2c138e5a067aa3b1242 < 21feb6df3967541931242c427fe0958276af81cc21feb6df3967541931242c427fe0958276af81cc
linuxlinux>= ded845a781a578dfb0b5b2c138e5a067aa3b1242 < 621b24b09eb61c63f262da0c9c5f0e93348897e5621b24b09eb61c63f262da0c9c5f0e93348897e5
linuxlinux_kernel
linuxlinux_kernel>= 0 < 5.10.103-15.10.103-1
linuxlinux_kernel>= 0 < 5.16.10-15.16.10-1
linuxlinux_kernel>= 0 < 5.16.10-15.16.10-1
linuxlinux_kernel>= 0 < 5.16.10-15.16.10-1
linuxlinux_kernel>= 4.12 < 4.14.2654.14.265
linuxlinux_kernel>= 4.15 < 4.19.2284.19.228
linuxlinux_kernel>= 4.20 < 5.4.1785.4.178
linuxlinux_kernel>= 5.11 < 5.15.225.15.22
linuxlinux_kernel>= 5.16 < 5.16.85.16.8
linuxlinux_kernel>= 5.5 < 5.10.995.10.99

CVSS provenance

nvdv3.15.5MEDIUMCVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:N/I:N/A:H
osv5.5MEDIUM
vendor_debian5.5MEDIUM
vendor_redhat5.5MEDIUM
Stop checking back — get the weekly exploitation signal.

Every Monday: what got weaponized or added to CISA KEV in the last seven days — each CVE cross-linked to its PoC, Nuclei template, and detection rule. Free, one email a week, unsubscribe in one click.