CVE-2022-48720

Source
https://nvd.nist.gov/vuln/detail/CVE-2022-48720
Import Source
https://storage.googleapis.com/osv-test-cve-osv-conversion/osv-output/CVE-2022-48720.json
JSON Data
https://api.test.osv.dev/v1/vulns/CVE-2022-48720
Downstream
Related
Published
2024-06-20T11:13:12Z
Modified
2025-10-13T13:26:43.306021Z
Summary
net: macsec: Fix offload support for NETDEV_UNREGISTER event
Details

In the Linux kernel, the following vulnerability has been resolved:

net: macsec: Fix offload support for NETDEV_UNREGISTER event

Current macsec netdev notify handler handles NETDEV_UNREGISTER event by releasing relevant SW resources only, this causes resources leak in case of macsec HW offload, as the underlay driver was not notified to clean it's macsec offload resources.

Fix by calling the underlay driver to clean it's relevant resources by moving offload handling from macsecdellink() to macseccommondellink() when handling NETDEVUNREGISTER event.

References

Affected packages

Git / git.kernel.org/pub/scm/linux/kernel/git/stable/linux.git

Affected ranges

Type
GIT
Repo
https://git.kernel.org/pub/scm/linux/kernel/git/stable/linux.git
Events
Introduced
3cf3227a21d1fb020fe26128e60321bd2151e922
Fixed
2e7f5b6ee1a7a2c628253a95b0a95b582901ef1b
Type
GIT
Repo
https://git.kernel.org/pub/scm/linux/kernel/git/stable/linux.git
Events
Introduced
3cf3227a21d1fb020fe26128e60321bd2151e922
Fixed
e7a0b3a0806dae3cc81931f0e83055ca2ac6f455
Type
GIT
Repo
https://git.kernel.org/pub/scm/linux/kernel/git/stable/linux.git
Events
Introduced
3cf3227a21d1fb020fe26128e60321bd2151e922
Fixed
8299be160aad8548071d080518712dec0df92bd5
Type
GIT
Repo
https://git.kernel.org/pub/scm/linux/kernel/git/stable/linux.git
Events
Introduced
3cf3227a21d1fb020fe26128e60321bd2151e922
Fixed
9cef24c8b76c1f6effe499d2f131807c90f7ce9a

Affected versions

v5.*

v5.10
v5.10-rc1
v5.10-rc2
v5.10-rc3
v5.10-rc4
v5.10-rc5
v5.10-rc6
v5.10-rc7
v5.10.1
v5.10.10
v5.10.11
v5.10.12
v5.10.13
v5.10.14
v5.10.15
v5.10.16
v5.10.17
v5.10.18
v5.10.19
v5.10.2
v5.10.20
v5.10.21
v5.10.22
v5.10.23
v5.10.24
v5.10.25
v5.10.26
v5.10.27
v5.10.28
v5.10.29
v5.10.3
v5.10.30
v5.10.31
v5.10.32
v5.10.33
v5.10.34
v5.10.35
v5.10.36
v5.10.37
v5.10.38
v5.10.39
v5.10.4
v5.10.40
v5.10.41
v5.10.42
v5.10.43
v5.10.44
v5.10.45
v5.10.46
v5.10.47
v5.10.48
v5.10.49
v5.10.5
v5.10.50
v5.10.51
v5.10.52
v5.10.53
v5.10.54
v5.10.55
v5.10.56
v5.10.57
v5.10.58
v5.10.59
v5.10.6
v5.10.60
v5.10.61
v5.10.62
v5.10.63
v5.10.64
v5.10.65
v5.10.66
v5.10.67
v5.10.68
v5.10.69
v5.10.7
v5.10.70
v5.10.71
v5.10.72
v5.10.73
v5.10.74
v5.10.75
v5.10.76
v5.10.77
v5.10.78
v5.10.79
v5.10.8
v5.10.80
v5.10.81
v5.10.82
v5.10.83
v5.10.84
v5.10.85
v5.10.86
v5.10.87
v5.10.88
v5.10.89
v5.10.9
v5.10.90
v5.10.91
v5.10.92
v5.10.93
v5.10.94
v5.10.95
v5.10.96
v5.10.97
v5.10.98
v5.11
v5.11-rc1
v5.11-rc2
v5.11-rc3
v5.11-rc4
v5.11-rc5
v5.11-rc6
v5.11-rc7
v5.12
v5.12-rc1
v5.12-rc1-dontuse
v5.12-rc2
v5.12-rc3
v5.12-rc4
v5.12-rc5
v5.12-rc6
v5.12-rc7
v5.12-rc8
v5.13
v5.13-rc1
v5.13-rc2
v5.13-rc3
v5.13-rc4
v5.13-rc5
v5.13-rc6
v5.13-rc7
v5.14
v5.14-rc1
v5.14-rc2
v5.14-rc3
v5.14-rc4
v5.14-rc5
v5.14-rc6
v5.14-rc7
v5.15
v5.15-rc1
v5.15-rc2
v5.15-rc3
v5.15-rc4
v5.15-rc5
v5.15-rc6
v5.15-rc7
v5.15.1
v5.15.10
v5.15.11
v5.15.12
v5.15.13
v5.15.14
v5.15.15
v5.15.16
v5.15.17
v5.15.18
v5.15.19
v5.15.2
v5.15.20
v5.15.21
v5.15.3
v5.15.4
v5.15.5
v5.15.6
v5.15.7
v5.15.8
v5.15.9
v5.16
v5.16-rc1
v5.16-rc2
v5.16-rc3
v5.16-rc4
v5.16-rc5
v5.16-rc6
v5.16-rc7
v5.16-rc8
v5.16.1
v5.16.2
v5.16.3
v5.16.4
v5.16.5
v5.16.6
v5.16.7
v5.17-rc1
v5.5
v5.5-rc6
v5.5-rc7
v5.6
v5.6-rc1
v5.6-rc2
v5.6-rc3
v5.6-rc4
v5.6-rc5
v5.6-rc6
v5.6-rc7
v5.7
v5.7-rc1
v5.7-rc2
v5.7-rc3
v5.7-rc4
v5.7-rc5
v5.7-rc6
v5.7-rc7
v5.8
v5.8-rc1
v5.8-rc2
v5.8-rc3
v5.8-rc4
v5.8-rc5
v5.8-rc6
v5.8-rc7
v5.9
v5.9-rc1
v5.9-rc2
v5.9-rc3
v5.9-rc4
v5.9-rc5
v5.9-rc6
v5.9-rc7
v5.9-rc8

Database specific

{
    "vanir_signatures": [
        {
            "digest": {
                "length": 455.0,
                "function_hash": "330385454074357798299320237180348824080"
            },
            "id": "CVE-2022-48720-15291d45",
            "signature_version": "v1",
            "deprecated": false,
            "signature_type": "Function",
            "target": {
                "function": "macsec_dellink",
                "file": "drivers/net/macsec.c"
            },
            "source": "https://git.kernel.org/pub/scm/linux/kernel/git/stable/linux.git@2e7f5b6ee1a7a2c628253a95b0a95b582901ef1b"
        },
        {
            "digest": {
                "line_hashes": [
                    "316783501381132008768385483490114108925",
                    "107405977249327389338337744371977091406",
                    "74462865309567532655056021108146899746",
                    "250300353698665767235138046216681164041",
                    "78590885041406002623007376571050846304",
                    "211634606686968147014244074616110552484",
                    "167490455997343948133123596425694559270",
                    "139094021376781461927315285319481501023",
                    "169289232075034612902488490522873041318",
                    "185155229560041755196016198392289182140",
                    "11419114146376302276013067468930631414",
                    "268760962086875241047300070330481133276",
                    "130148052892207636033895942375317485535",
                    "312643767049558104402848817328449997516",
                    "170932977492096667942691955649799912682"
                ],
                "threshold": 0.9
            },
            "id": "CVE-2022-48720-20b18dcd",
            "signature_version": "v1",
            "deprecated": false,
            "signature_type": "Line",
            "target": {
                "file": "drivers/net/macsec.c"
            },
            "source": "https://git.kernel.org/pub/scm/linux/kernel/git/stable/linux.git@2e7f5b6ee1a7a2c628253a95b0a95b582901ef1b"
        },
        {
            "digest": {
                "length": 249.0,
                "function_hash": "51831812436623447877058350147038959849"
            },
            "id": "CVE-2022-48720-232af9da",
            "signature_version": "v1",
            "deprecated": false,
            "signature_type": "Function",
            "target": {
                "function": "macsec_common_dellink",
                "file": "drivers/net/macsec.c"
            },
            "source": "https://git.kernel.org/pub/scm/linux/kernel/git/stable/linux.git@9cef24c8b76c1f6effe499d2f131807c90f7ce9a"
        },
        {
            "digest": {
                "length": 455.0,
                "function_hash": "330385454074357798299320237180348824080"
            },
            "id": "CVE-2022-48720-29bdc4e4",
            "signature_version": "v1",
            "deprecated": false,
            "signature_type": "Function",
            "target": {
                "function": "macsec_dellink",
                "file": "drivers/net/macsec.c"
            },
            "source": "https://git.kernel.org/pub/scm/linux/kernel/git/stable/linux.git@8299be160aad8548071d080518712dec0df92bd5"
        },
        {
            "digest": {
                "line_hashes": [
                    "316783501381132008768385483490114108925",
                    "107405977249327389338337744371977091406",
                    "74462865309567532655056021108146899746",
                    "250300353698665767235138046216681164041",
                    "78590885041406002623007376571050846304",
                    "211634606686968147014244074616110552484",
                    "167490455997343948133123596425694559270",
                    "139094021376781461927315285319481501023",
                    "169289232075034612902488490522873041318",
                    "185155229560041755196016198392289182140",
                    "11419114146376302276013067468930631414",
                    "268760962086875241047300070330481133276",
                    "130148052892207636033895942375317485535",
                    "312643767049558104402848817328449997516",
                    "170932977492096667942691955649799912682"
                ],
                "threshold": 0.9
            },
            "id": "CVE-2022-48720-44fac435",
            "signature_version": "v1",
            "deprecated": false,
            "signature_type": "Line",
            "target": {
                "file": "drivers/net/macsec.c"
            },
            "source": "https://git.kernel.org/pub/scm/linux/kernel/git/stable/linux.git@8299be160aad8548071d080518712dec0df92bd5"
        },
        {
            "digest": {
                "line_hashes": [
                    "316783501381132008768385483490114108925",
                    "107405977249327389338337744371977091406",
                    "74462865309567532655056021108146899746",
                    "250300353698665767235138046216681164041",
                    "78590885041406002623007376571050846304",
                    "211634606686968147014244074616110552484",
                    "167490455997343948133123596425694559270",
                    "139094021376781461927315285319481501023",
                    "169289232075034612902488490522873041318",
                    "185155229560041755196016198392289182140",
                    "11419114146376302276013067468930631414",
                    "268760962086875241047300070330481133276",
                    "130148052892207636033895942375317485535",
                    "312643767049558104402848817328449997516",
                    "170932977492096667942691955649799912682"
                ],
                "threshold": 0.9
            },
            "id": "CVE-2022-48720-62e9d17a",
            "signature_version": "v1",
            "deprecated": false,
            "signature_type": "Line",
            "target": {
                "file": "drivers/net/macsec.c"
            },
            "source": "https://git.kernel.org/pub/scm/linux/kernel/git/stable/linux.git@e7a0b3a0806dae3cc81931f0e83055ca2ac6f455"
        },
        {
            "digest": {
                "line_hashes": [
                    "316783501381132008768385483490114108925",
                    "107405977249327389338337744371977091406",
                    "74462865309567532655056021108146899746",
                    "250300353698665767235138046216681164041",
                    "78590885041406002623007376571050846304",
                    "211634606686968147014244074616110552484",
                    "167490455997343948133123596425694559270",
                    "139094021376781461927315285319481501023",
                    "169289232075034612902488490522873041318",
                    "185155229560041755196016198392289182140",
                    "11419114146376302276013067468930631414",
                    "268760962086875241047300070330481133276",
                    "130148052892207636033895942375317485535",
                    "312643767049558104402848817328449997516",
                    "170932977492096667942691955649799912682"
                ],
                "threshold": 0.9
            },
            "id": "CVE-2022-48720-6e77c02b",
            "signature_version": "v1",
            "deprecated": false,
            "signature_type": "Line",
            "target": {
                "file": "drivers/net/macsec.c"
            },
            "source": "https://git.kernel.org/pub/scm/linux/kernel/git/stable/linux.git@9cef24c8b76c1f6effe499d2f131807c90f7ce9a"
        },
        {
            "digest": {
                "length": 455.0,
                "function_hash": "330385454074357798299320237180348824080"
            },
            "id": "CVE-2022-48720-a2da2841",
            "signature_version": "v1",
            "deprecated": false,
            "signature_type": "Function",
            "target": {
                "function": "macsec_dellink",
                "file": "drivers/net/macsec.c"
            },
            "source": "https://git.kernel.org/pub/scm/linux/kernel/git/stable/linux.git@e7a0b3a0806dae3cc81931f0e83055ca2ac6f455"
        },
        {
            "digest": {
                "length": 249.0,
                "function_hash": "51831812436623447877058350147038959849"
            },
            "id": "CVE-2022-48720-ccb0a93c",
            "signature_version": "v1",
            "deprecated": false,
            "signature_type": "Function",
            "target": {
                "function": "macsec_common_dellink",
                "file": "drivers/net/macsec.c"
            },
            "source": "https://git.kernel.org/pub/scm/linux/kernel/git/stable/linux.git@8299be160aad8548071d080518712dec0df92bd5"
        },
        {
            "digest": {
                "length": 455.0,
                "function_hash": "330385454074357798299320237180348824080"
            },
            "id": "CVE-2022-48720-d5be00b5",
            "signature_version": "v1",
            "deprecated": false,
            "signature_type": "Function",
            "target": {
                "function": "macsec_dellink",
                "file": "drivers/net/macsec.c"
            },
            "source": "https://git.kernel.org/pub/scm/linux/kernel/git/stable/linux.git@9cef24c8b76c1f6effe499d2f131807c90f7ce9a"
        },
        {
            "digest": {
                "length": 249.0,
                "function_hash": "51831812436623447877058350147038959849"
            },
            "id": "CVE-2022-48720-ed7ed966",
            "signature_version": "v1",
            "deprecated": false,
            "signature_type": "Function",
            "target": {
                "function": "macsec_common_dellink",
                "file": "drivers/net/macsec.c"
            },
            "source": "https://git.kernel.org/pub/scm/linux/kernel/git/stable/linux.git@e7a0b3a0806dae3cc81931f0e83055ca2ac6f455"
        },
        {
            "digest": {
                "length": 249.0,
                "function_hash": "51831812436623447877058350147038959849"
            },
            "id": "CVE-2022-48720-eee18cbb",
            "signature_version": "v1",
            "deprecated": false,
            "signature_type": "Function",
            "target": {
                "function": "macsec_common_dellink",
                "file": "drivers/net/macsec.c"
            },
            "source": "https://git.kernel.org/pub/scm/linux/kernel/git/stable/linux.git@2e7f5b6ee1a7a2c628253a95b0a95b582901ef1b"
        }
    ]
}

Linux / Kernel

Package

Name
Kernel

Affected ranges

Type
ECOSYSTEM
Events
Introduced
5.6.0
Fixed
5.10.99
Type
ECOSYSTEM
Events
Introduced
5.11.0
Fixed
5.15.22
Type
ECOSYSTEM
Events
Introduced
5.16.0
Fixed
5.16.8