CVE-2022-48709

MEDIUM

Linux Kernel 5.16-6.1.11 - Use-After-Free in ice_add_adv_recipe

Title source: llm
STIX 2.1

Description

In the Linux kernel, the following vulnerability has been resolved: ice: switch: fix potential memleak in ice_add_adv_recipe() When ice_add_special_words() fails, the 'rm' is not released, which will lead to a memory leak. Fix this up by going to 'err_unroll' label. Compile tested only.

Scores

CVSS v3 5.5
EPSS 0.0021
EPSS Percentile 10.4%
Attack Vector LOCAL
CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:N/I:N/A:H

CISA SSVC

Vulnrichment
Exploitation none
Automatable no
Technical Impact partial

Details

CWE
CWE-401
Status published
Products (9)
linux/Kernel 5.16.0 - 6.1.12linux
Linux/Linux < 5.16
Linux/Linux 5.16
Linux/Linux 6.1.12 - 6.1.*
Linux/Linux 6.2
Linux/Linux 8b032a55c1bd5d47527263445aba9dc45144b00d - 47f4ff6f23f00f5501ff2d7054c1a37c170a7aa0
Linux/Linux 8b032a55c1bd5d47527263445aba9dc45144b00d - 4a606ce68426c88ff2563382b33cc34f3485fe57
linux/linux_kernel 6.2 rc1 (7 CPE variants)
linux/linux_kernel 5.16 - 6.1.12
Published May 21, 2024
Tracked Since Feb 18, 2026