VulnerabilityModified
CVE-2022-48851
In the Linux kernel, the following vulnerability has been resolved: staging: gdm724x: fix use after free in gdm_lte_rx() The netif_rx_ni() function frees the skb so we can't dereference it to save the skb->len.
HIGH 7.8EPSS 0.51%
Does this matter?
High impact if exploited, but EPSS currently rates exploitation as unlikely (0.51%). Schedule it in the normal patch cycle and watch for a rise in EPSS or a public exploit.
Description
In the Linux kernel, the following vulnerability has been resolved: staging: gdm724x: fix use after free in gdm_lte_rx() The netif_rx_ni() function frees the skb so we can't dereference it to save the skb->len.
- CVSS 3.1
- 7.8 HIGHCVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H
- EPSS
- 0.51% probability · 42th percentile
- CISA KEV
- Not listed
- Weakness
- CWE-416
- Affected
- linux/linux kernel
- Source
- 416baaa9-dc9f-4396-8d5f-8c081fb06d67
References
- https://git.kernel.org/stable/c/1fb9dd3787495b4deb0efe66c58306b65691a48fPatch
- https://git.kernel.org/stable/c/403e3afe241b62401de1f8629c9c6b9b3d69dbffPatch
- https://git.kernel.org/stable/c/48ecdf3e29a6e514e8196691589c7dfc6c4ac169Patch
- https://git.kernel.org/stable/c/6d9700b445098dbbce0caff4b8cfca214cf1e757Patch
- https://git.kernel.org/stable/c/6dc7b87c62423bfa68139fe95e85028aab584c9aPatch
- https://git.kernel.org/stable/c/83a9c886c2b5a0d28c0b37e1736b47f38d61332aPatch
- https://git.kernel.org/stable/c/d39dc79513e99147b4c158a8a9e46743e23944f5Patch
- https://git.kernel.org/stable/c/fc7f750dc9d102c1ed7bbe4591f991e770c99033Patch
- https://git.kernel.org/stable/c/1fb9dd3787495b4deb0efe66c58306b65691a48fPatch
- https://git.kernel.org/stable/c/403e3afe241b62401de1f8629c9c6b9b3d69dbffPatch
- https://git.kernel.org/stable/c/48ecdf3e29a6e514e8196691589c7dfc6c4ac169Patch
- https://git.kernel.org/stable/c/6d9700b445098dbbce0caff4b8cfca214cf1e757Patch
- https://git.kernel.org/stable/c/6dc7b87c62423bfa68139fe95e85028aab584c9aPatch
- https://git.kernel.org/stable/c/83a9c886c2b5a0d28c0b37e1736b47f38d61332aPatch
- https://git.kernel.org/stable/c/d39dc79513e99147b4c158a8a9e46743e23944f5Patch
- https://git.kernel.org/stable/c/fc7f750dc9d102c1ed7bbe4591f991e770c99033Patch
Source: NVD record, EPSS from FIRST.org, KEV from CISA. Refreshed daily.