Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

debian логотип

CVE-2022-45888

Опубликовано: 25 нояб. 2022
Источник: debian

Описание

An issue was discovered in the Linux kernel through 6.0.9. drivers/char/xillybus/xillyusb.c has a race condition and use-after-free during physical removal of a USB device.

Пакеты

ПакетСтатусВерсия исправленияРелизТип
linuxfixed6.3.7-1package
linuxnot-affectedbullseyepackage
linuxnot-affectedbusterpackage

Примечания

  • https://lore.kernel.org/all/20221022175404.GA375335@ubuntu/

  • Negligible security impact, would need physical access to "exploit"

Связанные уязвимости

CVSS3: 6.4
ubuntu
больше 2 лет назад

An issue was discovered in the Linux kernel through 6.0.9. drivers/char/xillybus/xillyusb.c has a race condition and use-after-free during physical removal of a USB device.

CVSS3: 6.4
redhat
больше 2 лет назад

An issue was discovered in the Linux kernel through 6.0.9. drivers/char/xillybus/xillyusb.c has a race condition and use-after-free during physical removal of a USB device.

CVSS3: 6.4
nvd
больше 2 лет назад

An issue was discovered in the Linux kernel through 6.0.9. drivers/char/xillybus/xillyusb.c has a race condition and use-after-free during physical removal of a USB device.

CVSS3: 6.4
github
больше 2 лет назад

An issue was discovered in the Linux kernel through 6.0.9. drivers/char/xillybus/xillyusb.c has a race condition and use-after-free during physical removal of a USB device.

CVSS3: 6.4
fstec
больше 2 лет назад

Уязвимость компонента driver/char/xillybus/xilliusb.c ядра операционной системы Linux, позволяющая нарушителю повысить привилегии в системе.