CVE-2022-48745
published 2024-06-20CVE-2022-48745: In the Linux kernel, the following vulnerability has been resolved: net/mlx5: Use del_timer_sync in fw reset flow of halting poll Substitute del_timer() with…
PriorityP416medium4.7CVSS 3.1
AVLACHPRLUINSUCNINAH
EPSS
0.18%
7.6th percentile
In the Linux kernel, the following vulnerability has been resolved:
net/mlx5: Use del_timer_sync in fw reset flow of halting poll
Substitute del_timer() with del_timer_sync() in fw reset polling
deactivation flow, in order to prevent a race condition which occurs
when del_timer() is called and timer is deactivated while another
process is handling the timer interrupt. A situation that led to
the following call trace:
RIP: 0010:run_timer_softirq+0x137/0x420
recalibrate_cpu_khz+0x10/0x10
ktime_get+0x3e/0xa0
? sched_clock_cpu+0xb/0xc0
__do_softirq+0xf5/0x2ea
irq_exit_rcu+0xc1/0xf0
sysvec_apic_timer_interrupt+0x9e/0xc0
asm_sysvec_apic_timer_interrupt+0x12/0x20
Affected
14 ranges
| Vendor | Product | Version range | Fixed in |
|---|---|---|---|
| debian | linux | < linux 5.16.7-1 (bookworm) | linux 5.16.7-1 (bookworm) |
| linux | linux | — | — |
| linux | linux | >= 38b9f903f22b9baa5c4b9bfb07c8bbc49f5efbba < 502c37b033fab7cde3e95a570af4f073306be45e | 502c37b033fab7cde3e95a570af4f073306be45e |
| linux | linux | >= 38b9f903f22b9baa5c4b9bfb07c8bbc49f5efbba < f895ebeb44d09d02674cfdd0cfc2bf687603918c | f895ebeb44d09d02674cfdd0cfc2bf687603918c |
| linux | linux | >= 38b9f903f22b9baa5c4b9bfb07c8bbc49f5efbba < 2a038dd1d942f8fbc495c58fa592ff24af05f1c2 | 2a038dd1d942f8fbc495c58fa592ff24af05f1c2 |
| linux | linux | >= 38b9f903f22b9baa5c4b9bfb07c8bbc49f5efbba < 3c5193a87b0fea090aa3f769d020337662d87b5e | 3c5193a87b0fea090aa3f769d020337662d87b5e |
| linux | linux_kernel | — | — |
| linux | linux_kernel | >= 0 < 5.10.103-1 | 5.10.103-1 |
| linux | linux_kernel | >= 0 < 5.16.7-1 | 5.16.7-1 |
| linux | linux_kernel | >= 0 < 5.16.7-1 | 5.16.7-1 |
| linux | linux_kernel | >= 0 < 5.16.7-1 | 5.16.7-1 |
| linux | linux_kernel | >= 5.10 < 5.10.97 | 5.10.97 |
| linux | linux_kernel | >= 5.11 < 5.15.20 | 5.15.20 |
| linux | linux_kernel | >= 5.16 < 5.16.6 | 5.16.6 |
CVSS provenance
nvdv3.14.7MEDIUMCVSS:3.1/AV:L/AC:H/PR:L/UI:N/S:U/C:N/I:N/A:H
osv4.7MEDIUM
vendor_debian4.7MEDIUM
vendor_redhat4.7MEDIUM
Stop checking back — get the weekly exploitation signal.
Every Monday: what got weaponized or added to CISA KEV in the last seven days — each CVE cross-linked to its PoC, Nuclei template, and detection rule. Free, one email a week, unsubscribe in one click.
Red Hat
kernel: net/mlx5: Use del_timer_sync in fw reset flow of halting poll
vendor_redhat·2024-06-20·CVSS 4.7
CVE-2022-48745 [MEDIUM] CWE-362 kernel: net/mlx5: Use del_timer_sync in fw reset flow of halting poll
kernel: net/mlx5: Use del_timer_sync in fw reset flow of halting poll
In the Linux kernel, the following vulnerability has been resolved:
net/mlx5: Use del_timer_sync in fw reset flow of halting poll
Substitute del_timer() with del_timer_sync() in fw reset polling
deactivation flow, in order to prevent a race condition which occurs
when del_timer() is called and timer is deactivated while another
process is handling the timer interrupt. A situation that led to
the following call trace:
RIP: 0010:run_timer_softirq+0x137/0x420
recalibrate_cpu_khz+0x10/0x10
ktime_get+0x3e/0xa0
? sched_clock_cpu+0xb/0xc0
__do_softirq+0xf5/0x2ea
irq_exit_rcu+0xc1/0xf0
sysvec_apic_timer_interrupt+0x9e/0xc0
asm_sysvec_apic_timer_interrupt+0x12/0x20
Package: kernel (Red Hat Enterprise Linux 6) - Not affected
Debian
CVE-2022-48745: linux - In the Linux kernel, the following vulnerability has been resolved: net/mlx5: U...
vendor_debian·2022·CVSS 4.7
CVE-2022-48745 [MEDIUM] CVE-2022-48745: linux - In the Linux kernel, the following vulnerability has been resolved: net/mlx5: U...
In the Linux kernel, the following vulnerability has been resolved: net/mlx5: Use del_timer_sync in fw reset flow of halting poll Substitute del_timer() with del_timer_sync() in fw reset polling deactivation flow, in order to prevent a race condition which occurs when del_timer() is called and timer is deactivated while another process is handling the timer interrupt. A situation that led to the following call trace: RIP: 0010:run_timer_softirq+0x137/0x420 recalibrate_cpu_khz+0x10/0x10 ktime_get+0x3e/0xa0 ? sched_clock_cpu+0xb/0xc0 __do_softirq+0xf5/0x2ea irq_exit_rcu+0xc1/0xf0 sysvec_apic_timer_interrupt+0x9e/0xc0 asm_sysvec_apic_timer_interrupt+0x12/0x20
Scope: local
bookworm: resolved (fixed in 5.16.7-1)
bullseye: resolved (fixed in 5.10.103-1)
forky: resolved (fixed in 5.16.7-1)
sid: r
OSV
CVE-2022-48745: In the Linux kernel, the following vulnerability has been resolved: net/mlx5: Use del_timer_sync in fw reset flow of halting poll Substitute del_timer
osv·2024-06-20·CVSS 4.7
CVE-2022-48745 [MEDIUM] CVE-2022-48745: In the Linux kernel, the following vulnerability has been resolved: net/mlx5: Use del_timer_sync in fw reset flow of halting poll Substitute del_timer
In the Linux kernel, the following vulnerability has been resolved: net/mlx5: Use del_timer_sync in fw reset flow of halting poll Substitute del_timer() with del_timer_sync() in fw reset polling deactivation flow, in order to prevent a race condition which occurs when del_timer() is called and timer is deactivated while another process is handling the timer interrupt. A situation that led to the following call trace: RIP: 0010:run_timer_softirq+0x137/0x420 recalibrate_cpu_khz+0x10/0x10 ktime_get+0x3e/0xa0 ? sched_clock_cpu+0xb/0xc0 __do_softirq+0xf5/0x2ea irq_exit_rcu+0xc1/0xf0 sysvec_apic_timer_interrupt+0x9e/0xc0 asm_sysvec_apic_timer_interrupt+0x12/0x20
GHSA
GHSA-gpr7-jpmr-pqcr: In the Linux kernel, the following vulnerability has been resolved:
net/mlx5: Use del_timer_sync in fw reset flow of halting poll
Substitute del_tim
ghsa_unreviewed·2024-06-20
CVE-2022-48745 [MEDIUM] CWE-362 GHSA-gpr7-jpmr-pqcr: In the Linux kernel, the following vulnerability has been resolved:
net/mlx5: Use del_timer_sync in fw reset flow of halting poll
Substitute del_tim
In the Linux kernel, the following vulnerability has been resolved:
net/mlx5: Use del_timer_sync in fw reset flow of halting poll
Substitute del_timer() with del_timer_sync() in fw reset polling
deactivation flow, in order to prevent a race condition which occurs
when del_timer() is called and timer is deactivated while another
process is handling the timer interrupt. A situation that led to
the following call trace:
RIP: 0010:run_timer_softirq+0x137/0x420
recalibrate_cpu_khz+0x10/0x10
ktime_get+0x3e/0xa0
? sched_clock_cpu+0xb/0xc0
__do_softirq+0xf5/0x2ea
irq_exit_rcu+0xc1/0xf0
sysvec_apic_timer_interrupt+0x9e/0xc0
asm_sysvec_apic_timer_interrupt+0x12/0x20
No detection rules found.
No public exploits indexed.
No writeups or analysis indexed.
https://git.kernel.org/stable/c/2a038dd1d942f8fbc495c58fa592ff24af05f1c2https://git.kernel.org/stable/c/3c5193a87b0fea090aa3f769d020337662d87b5ehttps://git.kernel.org/stable/c/502c37b033fab7cde3e95a570af4f073306be45ehttps://git.kernel.org/stable/c/f895ebeb44d09d02674cfdd0cfc2bf687603918chttps://git.kernel.org/stable/c/2a038dd1d942f8fbc495c58fa592ff24af05f1c2https://git.kernel.org/stable/c/3c5193a87b0fea090aa3f769d020337662d87b5ehttps://git.kernel.org/stable/c/502c37b033fab7cde3e95a570af4f073306be45ehttps://git.kernel.org/stable/c/f895ebeb44d09d02674cfdd0cfc2bf687603918c
2024-06-20
Published