Executive Summary

Informations
Name CVE-2022-48934 First vendor Publication 2024-08-22
Vendor Cve Last vendor Modification 2024-08-22

Security-Database Scoring CVSS v3

Cvss vector : CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:N/I:N/A:H
Overall CVSS Score 5.5
Base Score 5.5 Environmental Score 5.5
impact SubScore 3.6 Temporal Score 5.5
Exploitabality Sub Score 1.8
 
Attack Vector Local Attack Complexity Low
Privileges Required Low User Interaction None
Scope Unchanged Confidentiality Impact None
Integrity Impact None Availability Impact High
Calculate full CVSS 3.0 Vectors scores

Security-Database Scoring CVSS v2

Cvss vector :
Cvss Base Score N/A Attack Range N/A
Cvss Impact Score N/A Attack Complexity N/A
Cvss Expoit Score N/A Authentication N/A
Calculate full CVSS 2.0 Vectors scores

Detail

In the Linux kernel, the following vulnerability has been resolved:

nfp: flower: Fix a potential leak in nfp_tunnel_add_shared_mac()

ida_simple_get() returns an id between min (0) and max (NFP_MAX_MAC_INDEX) inclusive. So NFP_MAX_MAC_INDEX (0xff) is a valid id.

In order for the error handling path to work correctly, the 'invalid' value for 'ida_idx' should not be in the 0..NFP_MAX_MAC_INDEX range, inclusive.

So set it to -1.

Original Source

Url : http://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2022-48934

CWE : Common Weakness Enumeration

% Id Name
100 % CWE-401 Failure to Release Memory Before Removing Last Reference ('Memory Leak')

CPE : Common Platform Enumeration

TypeDescriptionCount
Application 7
Os 3504

Sources (Detail)

https://git.kernel.org/stable/c/3a14d0888eb4b0045884126acc69abfb7b87814d
https://git.kernel.org/stable/c/4086d2433576baf85f0e538511df97c8101e0a10
https://git.kernel.org/stable/c/5ad5886f85b6bd893e3ed19013765fb0c243c069
https://git.kernel.org/stable/c/9d8097caa73200710d52b9f4d9f430548f46a900
https://git.kernel.org/stable/c/af4bc921d39dffdb83076e0a7eed1321242b7d87
Source Url

Alert History

If you want to see full details history, please login or register.
0
1
2
3
4
5
6
7
8
9
10
11
12
13
14
15
16
17
18
Date Informations
2025-01-08 02:47:32
  • Multiple Updates
2025-01-07 02:47:08
  • Multiple Updates
2024-12-25 02:45:55
  • Multiple Updates
2024-12-12 02:48:49
  • Multiple Updates
2024-11-22 02:46:13
  • Multiple Updates
2024-11-20 02:43:37
  • Multiple Updates
2024-11-14 02:43:30
  • Multiple Updates
2024-11-09 02:44:08
  • Multiple Updates
2024-10-26 02:41:54
  • Multiple Updates
2024-10-25 02:43:40
  • Multiple Updates
2024-10-23 02:43:04
  • Multiple Updates
2024-10-03 02:39:07
  • Multiple Updates
2024-10-02 02:37:31
  • Multiple Updates
2024-09-04 02:36:47
  • Multiple Updates
2024-08-23 02:48:12
  • Multiple Updates
2024-08-23 02:34:45
  • Multiple Updates
2024-08-23 00:27:37
  • Multiple Updates
2024-08-22 17:27:24
  • Multiple Updates
2024-08-22 09:27:25
  • First insertion