CVE-2022-48885
published 2024-08-21CVE-2022-48885: In the Linux kernel, the following vulnerability has been resolved: ice: Fix potential memory leak in ice_gnss_tty_write() The ice_gnss_tty_write() return…
PriorityP416medium5.5CVSS 3.1
AVLACLPRLUINSUCNINAH
EPSS
0.21%
10.8th percentile
In the Linux kernel, the following vulnerability has been resolved:
ice: Fix potential memory leak in ice_gnss_tty_write()
The ice_gnss_tty_write() return directly if the write_buf alloc failed,
leaking the cmd_buf.
Fix by free cmd_buf if write_buf alloc failed.
Affected
9 ranges
| Vendor | Product | Version range | Fixed in |
|---|---|---|---|
| debian | linux | < linux 6.1.7-1 (bookworm) | linux 6.1.7-1 (bookworm) |
| linux | linux | — | — |
| linux | linux | >= d6b98c8d242aee40e7b8919dd07b593b0739e38d < 500ca1da9d0876244eb4d1b0ece6fa0e9968d45d | 500ca1da9d0876244eb4d1b0ece6fa0e9968d45d |
| linux | linux | >= d6b98c8d242aee40e7b8919dd07b593b0739e38d < f58985620f55580a07d40062c4115d8c9cf6ae27 | f58985620f55580a07d40062c4115d8c9cf6ae27 |
| linux | linux_kernel | — | — |
| linux | linux_kernel | >= 0 < 6.1.7-1 | 6.1.7-1 |
| linux | linux_kernel | >= 0 < 6.1.7-1 | 6.1.7-1 |
| linux | linux_kernel | >= 0 < 6.1.7-1 | 6.1.7-1 |
| linux | linux_kernel | >= 6.0 < 6.1.7 | 6.1.7 |
CVSS provenance
nvdv3.15.5MEDIUMCVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:N/I:N/A:H
osv5.5MEDIUM
vendor_debian5.5MEDIUM
vendor_redhat5.5MEDIUM
Stop checking back — get the weekly exploitation signal.
Every Monday: what got weaponized or added to CISA KEV in the last seven days — each CVE cross-linked to its PoC, Nuclei template, and detection rule. Free, one email a week, unsubscribe in one click.
Red Hat
kernel: ice: Fix potential memory leak in ice_gnss_tty_write()
vendor_redhat·2024-08-21·CVSS 5.5
CVE-2022-48885 [MEDIUM] CWE-401 kernel: ice: Fix potential memory leak in ice_gnss_tty_write()
kernel: ice: Fix potential memory leak in ice_gnss_tty_write()
In the Linux kernel, the following vulnerability has been resolved:
ice: Fix potential memory leak in ice_gnss_tty_write()
The ice_gnss_tty_write() return directly if the write_buf alloc failed,
leaking the cmd_buf.
Fix by free cmd_buf if write_buf alloc failed.
Statement: This issue is fixed in RHEL-9.2 and above
~~~
8cb1cac4610d (in rhel-9.2, rhel-9.3, rhel-9.4, rhel-9.5) ice: Fix potential memory leak in ice_gnss_tty_write()
~~~
Please note that while RHEL-9 kernel-rt still appears as affected, it has been fixed in the same RHSA as RHEL-9 kernel. This is because from RHEL-9.3 onwards, the kernel and kernel-rt fixes are bundled together in a single errata.
Package: kernel (Red Hat Enterprise Linux 6) - Not affected
Packag
Debian
CVE-2022-48885: linux - In the Linux kernel, the following vulnerability has been resolved: ice: Fix po...
vendor_debian·2022·CVSS 5.5
CVE-2022-48885 [MEDIUM] CVE-2022-48885: linux - In the Linux kernel, the following vulnerability has been resolved: ice: Fix po...
In the Linux kernel, the following vulnerability has been resolved: ice: Fix potential memory leak in ice_gnss_tty_write() The ice_gnss_tty_write() return directly if the write_buf alloc failed, leaking the cmd_buf. Fix by free cmd_buf if write_buf alloc failed.
Scope: local
bookworm: resolved (fixed in 6.1.7-1)
bullseye: resolved
forky: resolved (fixed in 6.1.7-1)
sid: resolved (fixed in 6.1.7-1)
trixie: resolved (fixed in 6.1.7-1)
OSV
CVE-2022-48885: In the Linux kernel, the following vulnerability has been resolved: ice: Fix potential memory leak in ice_gnss_tty_write() The ice_gnss_tty_write() re
osv·2024-08-21·CVSS 5.5
CVE-2022-48885 [MEDIUM] CVE-2022-48885: In the Linux kernel, the following vulnerability has been resolved: ice: Fix potential memory leak in ice_gnss_tty_write() The ice_gnss_tty_write() re
In the Linux kernel, the following vulnerability has been resolved: ice: Fix potential memory leak in ice_gnss_tty_write() The ice_gnss_tty_write() return directly if the write_buf alloc failed, leaking the cmd_buf. Fix by free cmd_buf if write_buf alloc failed.
GHSA
GHSA-rc9q-9gjh-f3q6: In the Linux kernel, the following vulnerability has been resolved:
ice: Fix potential memory leak in ice_gnss_tty_write()
The ice_gnss_tty_write()
ghsa_unreviewed·2024-08-21
CVE-2022-48885 [MEDIUM] CWE-401 GHSA-rc9q-9gjh-f3q6: In the Linux kernel, the following vulnerability has been resolved:
ice: Fix potential memory leak in ice_gnss_tty_write()
The ice_gnss_tty_write()
In the Linux kernel, the following vulnerability has been resolved:
ice: Fix potential memory leak in ice_gnss_tty_write()
The ice_gnss_tty_write() return directly if the write_buf alloc failed,
leaking the cmd_buf.
Fix by free cmd_buf if write_buf alloc failed.
No detection rules found.
No public exploits indexed.
No writeups or analysis indexed.
2024-08-21
Published