cbcvebase.
CVE-2022-48905
published 2024-08-22

CVE-2022-48905: In the Linux kernel, the following vulnerability has been resolved: ibmvnic: free reset-work-item when flushing Fix a tiny memory leak when flushing the reset…

PriorityP417medium5.5CVSS 3.1
AVLACLPRLUINSUCNINAH
EPSS
0.21%
11.5th percentile
In the Linux kernel, the following vulnerability has been resolved: ibmvnic: free reset-work-item when flushing Fix a tiny memory leak when flushing the reset work queue.

Affected

18 ranges
VendorProductVersion rangeFixed in
debianlinux< linux 5.16.14-1 (bookworm)linux 5.16.14-1 (bookworm)
linuxlinux
linuxlinux>= 2770a7984db588913e11a6dfcfe3461dbba9b7b2 < 786576c03b313a9ff6585458aa0dfd039d897f51786576c03b313a9ff6585458aa0dfd039d897f51
linuxlinux>= 2770a7984db588913e11a6dfcfe3461dbba9b7b2 < 58b07100c20e95c78b8cb4d6d28ca53eb9ef81f258b07100c20e95c78b8cb4d6d28ca53eb9ef81f2
linuxlinux>= 2770a7984db588913e11a6dfcfe3461dbba9b7b2 < 6acbc8875282d3ca8a73fa93cd7a9b166de5019c6acbc8875282d3ca8a73fa93cd7a9b166de5019c
linuxlinux>= 2770a7984db588913e11a6dfcfe3461dbba9b7b2 < 39738a2346b270e8f72f88d8856de2c167bd289939738a2346b270e8f72f88d8856de2c167bd2899
linuxlinux>= 2770a7984db588913e11a6dfcfe3461dbba9b7b2 < 4c26745e4576cec224092e6cc12e37829333b1834c26745e4576cec224092e6cc12e37829333b183
linuxlinux>= 2770a7984db588913e11a6dfcfe3461dbba9b7b2 < 8d0657f39f487d904fca713e0bc39c27073825538d0657f39f487d904fca713e0bc39c2707382553
linuxlinux_kernel
linuxlinux_kernel>= 0 < 5.10.106-15.10.106-1
linuxlinux_kernel>= 0 < 5.16.14-15.16.14-1
linuxlinux_kernel>= 0 < 5.16.14-15.16.14-1
linuxlinux_kernel>= 0 < 5.16.14-15.16.14-1
linuxlinux_kernel>= 4.18 < 4.19.2334.19.233
linuxlinux_kernel>= 4.20 < 5.4.1835.4.183
linuxlinux_kernel>= 5.11 < 5.15.275.15.27
linuxlinux_kernel>= 5.16 < 5.16.135.16.13
linuxlinux_kernel>= 5.5 < 5.10.1045.10.104

CVSS provenance

nvdv3.15.5MEDIUMCVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:N/I:N/A:H
osv5.5MEDIUM
vendor_debian5.5MEDIUM
vendor_redhat5.5MEDIUM
Stop checking back — get the weekly exploitation signal.

Every Monday: what got weaponized or added to CISA KEV in the last seven days — each CVE cross-linked to its PoC, Nuclei template, and detection rule. Free, one email a week, unsubscribe in one click.