CVE-2022-48784

MEDIUM

Linux Kernel 5.12.1-5.15.24, 5.13.0-5.15.24, 5.16.0-5.16.10 - Race Condition in cfg80211 Interface Destruction

Title source: llm
STIX 2.1

Description

In the Linux kernel, the following vulnerability has been resolved: cfg80211: fix race in netlink owner interface destruction My previous fix here to fix the deadlock left a race where the exact same deadlock (see the original commit referenced below) can still happen if cfg80211_destroy_ifaces() already runs while nl80211_netlink_notify() is still marking some interfaces as nl_owner_dead. The race happens because we have two loops here - first we dev_close() all the netdevs, and then we destroy them. If we also have two netdevs (first one need only be a wdev though) then we can find one during the first iteration, close it, and go to the second iteration -- but then find two, and try to destroy also the one we didn't close yet. Fix this by only iterating once.

Scores

CVSS v3 4.7
EPSS 0.0017
EPSS Percentile 6.6%
Attack Vector LOCAL
CVSS:3.1/AV:L/AC:H/PR:L/UI:N/S:U/C:N/I:N/A:H

CISA SSVC

Vulnrichment
Exploitation none
Automatable no
Technical Impact partial

Details

CWE
CWE-362
Status published
Products (14)
linux/Kernel 5.13.0 - 5.15.25linux
linux/Kernel 5.16.0 - 5.16.11linux
Linux/Linux < 5.13
Linux/Linux 2e4f97122f3a9df870dfe9671994136448890768
Linux/Linux 5.12.1 - 5.13
Linux/Linux 5.13
Linux/Linux 5.15.25 - 5.15.*
Linux/Linux 5.16.11 - 5.16.*
Linux/Linux 5.17
Linux/Linux ea6b2098dd02789f68770fd3d5a373732207be2f - 241e633cb379c4f332fc1baf2abec95ec840cbeb
... and 4 more
Published Jul 16, 2024
Tracked Since Feb 18, 2026