In the Linux kernel, the following vulnerability has been resolved:
netfilter: ebtables: fix memory leak when blob is malformed
The bug fix was incomplete, it "replaced" crash with a memory leak. The old code had an assignment to "ret" embedded into the conditional, restore this.
{ "vanir_signatures": [ { "source": "https://git.kernel.org/pub/scm/linux/kernel/git/stable/linux.git@ebd97dbe3c55d68346b9c5fb00634a7f5b10bbee", "signature_type": "Line", "target": { "file": "net/bridge/netfilter/ebtables.c" }, "id": "CVE-2022-48641-04cd5269", "digest": { "threshold": 0.9, "line_hashes": [ "116360368862217983692841477592907717436", "193575990643682738978735358150531986094", "162183682769245979509433729734594350803", "321667255052587236845468126402922014195", "278493199250963135834400483241252879844" ] }, "deprecated": false, "signature_version": "v1" }, { "source": "https://git.kernel.org/pub/scm/linux/kernel/git/stable/linux.git@754e8b74281dd54a324698803483f47cf3355ae1", "signature_type": "Line", "target": { "file": "net/bridge/netfilter/ebtables.c" }, "id": "CVE-2022-48641-3c31734c", "digest": { "threshold": 0.9, "line_hashes": [ "116360368862217983692841477592907717436", "193575990643682738978735358150531986094", "162183682769245979509433729734594350803", "321667255052587236845468126402922014195", "278493199250963135834400483241252879844" ] }, "deprecated": false, "signature_version": "v1" }, { "source": "https://git.kernel.org/pub/scm/linux/kernel/git/stable/linux.git@ebd97dbe3c55d68346b9c5fb00634a7f5b10bbee", "signature_type": "Function", "target": { "file": "net/bridge/netfilter/ebtables.c", "function": "do_replace_finish" }, "id": "CVE-2022-48641-92cffbf9", "digest": { "function_hash": "340044601904635616575394178023412654414", "length": 1923.0 }, "deprecated": false, "signature_version": "v1" }, { "source": "https://git.kernel.org/pub/scm/linux/kernel/git/stable/linux.git@754e8b74281dd54a324698803483f47cf3355ae1", "signature_type": "Function", "target": { "file": "net/bridge/netfilter/ebtables.c", "function": "do_replace_finish" }, "id": "CVE-2022-48641-9d394173", "digest": { "function_hash": "62464908233271940082616908653925627523", "length": 2286.0 }, "deprecated": false, "signature_version": "v1" } ] }