Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

nvd логотип

CVE-2022-41849

Опубликовано: 30 сент. 2022
Источник: nvd
CVSS3: 4.2
EPSS Низкий

Описание

drivers/video/fbdev/smscufx.c in the Linux kernel through 5.19.12 has a race condition and resultant use-after-free if a physically proximate attacker removes a USB device while calling open(), aka a race condition between ufx_ops_open and ufx_usb_disconnect.

Уязвимые конфигурации

Конфигурация 1
cpe:2.3:o:linux:linux_kernel:*:*:*:*:*:*:*:*
Версия до 5.19.12 (включая)
Конфигурация 2
cpe:2.3:o:debian:debian_linux:10.0:*:*:*:*:*:*:*

EPSS

Процентиль: 16%
0.00051
Низкий

4.2 Medium

CVSS3

Дефекты

CWE-362

Связанные уязвимости

CVSS3: 4.2
ubuntu
почти 3 года назад

drivers/video/fbdev/smscufx.c in the Linux kernel through 5.19.12 has a race condition and resultant use-after-free if a physically proximate attacker removes a USB device while calling open(), aka a race condition between ufx_ops_open and ufx_usb_disconnect.

CVSS3: 4.2
redhat
почти 3 года назад

drivers/video/fbdev/smscufx.c in the Linux kernel through 5.19.12 has a race condition and resultant use-after-free if a physically proximate attacker removes a USB device while calling open(), aka a race condition between ufx_ops_open and ufx_usb_disconnect.

CVSS3: 4.2
msrc
почти 3 года назад

Описание отсутствует

CVSS3: 4.2
debian
почти 3 года назад

drivers/video/fbdev/smscufx.c in the Linux kernel through 5.19.12 has ...

CVSS3: 4.2
github
почти 3 года назад

drivers/video/fbdev/smscufx.c in the Linux kernel through 5.19.12 has a race condition and resultant use-after-free if a physically proximate attacker removes a USB device while calling open(), aka a race condition between ufx_ops_open and ufx_usb_disconnect.

EPSS

Процентиль: 16%
0.00051
Низкий

4.2 Medium

CVSS3

Дефекты

CWE-362