CVE-2022-48743
published 2024-06-20CVE-2022-48743: In the Linux kernel, the following vulnerability has been resolved: net: amd-xgbe: Fix skb data length underflow There will be BUG_ON() triggered in…
PriorityP420medium5.5CVSS 3.1
AVLACLPRLUINSUCNINAH
EPSS
0.65%
47.5th percentile
In the Linux kernel, the following vulnerability has been resolved:
net: amd-xgbe: Fix skb data length underflow
There will be BUG_ON() triggered in include/linux/skbuff.h leading to
intermittent kernel panic, when the skb length underflow is detected.
Fix this by dropping the packet if such length underflows are seen
because of inconsistencies in the hardware descriptors.
Affected
26 ranges· showing 25
| Vendor | Product | Version range | Fixed in |
|---|---|---|---|
| debian | linux | < linux 5.16.7-1 (bookworm) | linux 5.16.7-1 (bookworm) |
| linux | linux | — | — |
| linux | linux | — | — |
| linux | linux | — | — |
| linux | linux | >= 4.10.7 < 4.11 | 4.11 |
| linux | linux | >= 4.4.58 < 4.5 | 4.5 |
| linux | linux | >= 4.9.19 < 4.9.300 | 4.9.300 |
| linux | linux | >= 622c36f143fc9566ba49d7cec994c2da1182d9e2 < 617f9934bb37993b9813832516f318ba874bcb7d | 617f9934bb37993b9813832516f318ba874bcb7d |
| linux | linux | >= 622c36f143fc9566ba49d7cec994c2da1182d9e2 < 34aeb4da20f93ac80a6291a2dbe7b9c6460e9b26 | 34aeb4da20f93ac80a6291a2dbe7b9c6460e9b26 |
| linux | linux | >= 622c36f143fc9566ba49d7cec994c2da1182d9e2 < 9892742f035f7aa7dcd2bb0750effa486db89576 | 9892742f035f7aa7dcd2bb0750effa486db89576 |
| linux | linux | >= 622c36f143fc9566ba49d7cec994c2da1182d9e2 < 4d3fcfe8464838b3920bc2b939d888e0b792934e | 4d3fcfe8464838b3920bc2b939d888e0b792934e |
| linux | linux | >= 622c36f143fc9566ba49d7cec994c2da1182d9e2 < db6fd92316a254be2097556f01bccecf560e53ce | db6fd92316a254be2097556f01bccecf560e53ce |
| linux | linux | >= 622c36f143fc9566ba49d7cec994c2da1182d9e2 < e8f73f620fee5f52653ed2da360121e4446575c5 | e8f73f620fee5f52653ed2da360121e4446575c5 |
| linux | linux | >= 622c36f143fc9566ba49d7cec994c2da1182d9e2 < 5aac9108a180fc06e28d4e7fb00247ce603b72ee | 5aac9108a180fc06e28d4e7fb00247ce603b72ee |
| linux | linux | >= fafc9555d87a19c78bcd43ed731c3a73bf0b37a9 < 9924c80bd484340191e586110ca22bff23a49f2e | 9924c80bd484340191e586110ca22bff23a49f2e |
| linux | linux_kernel | >= 0 < 5.10.103-1 | 5.10.103-1 |
| linux | linux_kernel | >= 0 < 5.16.7-1 | 5.16.7-1 |
| linux | linux_kernel | >= 0 < 5.16.7-1 | 5.16.7-1 |
| linux | linux_kernel | >= 0 < 5.16.7-1 | 5.16.7-1 |
| linux | linux_kernel | >= 4.11 < 4.14.265 | 4.14.265 |
| linux | linux_kernel | >= 4.15 < 4.19.228 | 4.19.228 |
| linux | linux_kernel | >= 4.20 < 5.4.177 | 5.4.177 |
| linux | linux_kernel | >= 4.9.19 < 4.9.300 | 4.9.300 |
| linux | linux_kernel | >= 5.11 < 5.15.20 | 5.15.20 |
| linux | linux_kernel | >= 5.16 < 5.16.6 | 5.16.6 |
CVSS provenance
nvdv3.15.5MEDIUMCVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:N/I:N/A:H
osv5.5MEDIUM
vendor_debian5.5MEDIUM
vendor_redhat5.5MEDIUM
Stop checking back — get the weekly exploitation signal.
Every Monday: what got weaponized or added to CISA KEV in the last seven days — each CVE cross-linked to its PoC, Nuclei template, and detection rule. Free, one email a week, unsubscribe in one click.
Red Hat
kernel: net: amd-xgbe: Fix skb data length underflow
vendor_redhat·2024-06-20·CVSS 5.5
CVE-2022-48743 [MEDIUM] CWE-124 kernel: net: amd-xgbe: Fix skb data length underflow
kernel: net: amd-xgbe: Fix skb data length underflow
In the Linux kernel, the following vulnerability has been resolved:
net: amd-xgbe: Fix skb data length underflow
There will be BUG_ON() triggered in include/linux/skbuff.h leading to
intermittent kernel panic, when the skb length underflow is detected.
Fix this by dropping the packet if such length underflows are seen
because of inconsistencies in the hardware descriptors.
Package: kernel (Red Hat Enterprise Linux 6) - Not affected
Package: kernel (Red Hat Enterprise Linux 7) - Out of support scope
Package: kernel-rt (Red Hat Enterprise Linux 7) - Out of support scope
Package: kernel-rt (Red Hat Enterprise Linux 9) - Affected
Debian
CVE-2022-48743: linux - In the Linux kernel, the following vulnerability has been resolved: net: amd-xg...
vendor_debian·2022·CVSS 5.5
CVE-2022-48743 [MEDIUM] CVE-2022-48743: linux - In the Linux kernel, the following vulnerability has been resolved: net: amd-xg...
In the Linux kernel, the following vulnerability has been resolved: net: amd-xgbe: Fix skb data length underflow There will be BUG_ON() triggered in include/linux/skbuff.h leading to intermittent kernel panic, when the skb length underflow is detected. Fix this by dropping the packet if such length underflows are seen because of inconsistencies in the hardware descriptors.
Scope: local
bookworm: resolved (fixed in 5.16.7-1)
bullseye: resolved (fixed in 5.10.103-1)
forky: resolved (fixed in 5.16.7-1)
sid: resolved (fixed in 5.16.7-1)
trixie: resolved (fixed in 5.16.7-1)
OSV
CVE-2022-48743: In the Linux kernel, the following vulnerability has been resolved: net: amd-xgbe: Fix skb data length underflow There will be BUG_ON() triggered in i
osv·2024-06-20·CVSS 5.5
CVE-2022-48743 [MEDIUM] CVE-2022-48743: In the Linux kernel, the following vulnerability has been resolved: net: amd-xgbe: Fix skb data length underflow There will be BUG_ON() triggered in i
In the Linux kernel, the following vulnerability has been resolved: net: amd-xgbe: Fix skb data length underflow There will be BUG_ON() triggered in include/linux/skbuff.h leading to intermittent kernel panic, when the skb length underflow is detected. Fix this by dropping the packet if such length underflows are seen because of inconsistencies in the hardware descriptors.
GHSA
GHSA-hj37-jcv3-rcw4: In the Linux kernel, the following vulnerability has been resolved:
net: amd-xgbe: Fix skb data length underflow
There will be BUG_ON() triggered in
ghsa_unreviewed·2024-06-20
CVE-2022-48743 [MEDIUM] CWE-787 GHSA-hj37-jcv3-rcw4: In the Linux kernel, the following vulnerability has been resolved:
net: amd-xgbe: Fix skb data length underflow
There will be BUG_ON() triggered in
In the Linux kernel, the following vulnerability has been resolved:
net: amd-xgbe: Fix skb data length underflow
There will be BUG_ON() triggered in include/linux/skbuff.h leading to
intermittent kernel panic, when the skb length underflow is detected.
Fix this by dropping the packet if such length underflows are seen
because of inconsistencies in the hardware descriptors.
No detection rules found.
No public exploits indexed.
No writeups or analysis indexed.
https://git.kernel.org/stable/c/34aeb4da20f93ac80a6291a2dbe7b9c6460e9b26https://git.kernel.org/stable/c/4d3fcfe8464838b3920bc2b939d888e0b792934ehttps://git.kernel.org/stable/c/5aac9108a180fc06e28d4e7fb00247ce603b72eehttps://git.kernel.org/stable/c/617f9934bb37993b9813832516f318ba874bcb7dhttps://git.kernel.org/stable/c/9892742f035f7aa7dcd2bb0750effa486db89576https://git.kernel.org/stable/c/9924c80bd484340191e586110ca22bff23a49f2ehttps://git.kernel.org/stable/c/db6fd92316a254be2097556f01bccecf560e53cehttps://git.kernel.org/stable/c/e8f73f620fee5f52653ed2da360121e4446575c5https://git.kernel.org/stable/c/34aeb4da20f93ac80a6291a2dbe7b9c6460e9b26https://git.kernel.org/stable/c/4d3fcfe8464838b3920bc2b939d888e0b792934ehttps://git.kernel.org/stable/c/5aac9108a180fc06e28d4e7fb00247ce603b72eehttps://git.kernel.org/stable/c/617f9934bb37993b9813832516f318ba874bcb7dhttps://git.kernel.org/stable/c/9892742f035f7aa7dcd2bb0750effa486db89576https://git.kernel.org/stable/c/9924c80bd484340191e586110ca22bff23a49f2ehttps://git.kernel.org/stable/c/db6fd92316a254be2097556f01bccecf560e53cehttps://git.kernel.org/stable/c/e8f73f620fee5f52653ed2da360121e4446575c5
2024-06-20
Published