CVE-2022-48626

HIGH

Linux Kernel Use-After-Free in MOXART MMC Host Remove Path

Title source: llm
STIX 2.1

Description

In the Linux kernel, the following vulnerability has been resolved: moxart: fix potential use-after-free on remove path It was reported that the mmc host structure could be accessed after it was freed in moxart_remove(), so fix this by saving the base register of the device and using it instead of the pointer dereference.

Scores

CVSS v3 7.8
EPSS 0.0031
EPSS Percentile 22.7%
Attack Vector LOCAL
CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H

CISA SSVC

Vulnrichment
Exploitation none
Automatable no
Technical Impact partial

Details

CWE
CWE-416
Status published
Products (26)
linux/Kernel 3.16.0 - 4.9.301linux
linux/Kernel 4.10.0 - 4.14.266linux
linux/Kernel 4.15.0 - 4.19.229linux
linux/Kernel 4.20.0 - 5.4.179linux
linux/Kernel 5.11.0 - 5.15.23linux
linux/Kernel 5.16.0 - 5.16.9linux
linux/Kernel 5.5.0 - 5.10.100linux
Linux/Linux < 3.16
Linux/Linux 1b66e94e6b9995323190f31c51d8e1a6f516627e - 3a0a7ec5574b510b067cfc734b8bdb6564b31d4e
Linux/Linux 1b66e94e6b9995323190f31c51d8e1a6f516627e - 7f901d53f120d1921f84f7b9b118e87e94b403c5
... and 16 more
Published Feb 26, 2024
Tracked Since Feb 18, 2026