CVE-2022-49811
HIGHLinux Kernel <6.0.10 Use-After-Free in drbd_create_device()
Title source: llmDescription
In the Linux kernel, the following vulnerability has been resolved: drbd: use after free in drbd_create_device() The drbd_destroy_connection() frees the "connection" so use the _safe() iterator to prevent a use after free.
References (7)
Core 7
Core References
Scores
CVSS v3
7.8
EPSS
0.0019
EPSS Percentile
8.5%
Attack Vector
LOCAL
CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H
Details
CWE
CWE-416
Status
published
Products (24)
linux/Kernel
3.15.0 - 4.14.300linux
linux/Kernel
4.15.0 - 4.19.267linux
linux/Kernel
4.20.0 - 5.4.225linux
linux/Kernel
5.11.0 - 5.15.80linux
linux/Kernel
5.16.0 - 6.0.10linux
linux/Kernel
5.5.0 - 5.10.156linux
Linux/Linux
< 3.15
Linux/Linux
3.15
Linux/Linux
4.14.300 - 4.14.*
Linux/Linux
4.19.267 - 4.19.*
... and 14 more
Published
May 01, 2025
Tracked Since
Feb 18, 2026