CVE-2022-48873

Source
https://cve.org/CVERecord?id=CVE-2022-48873
Import Source
https://storage.googleapis.com/osv-test-cve-osv-conversion/osv-output/CVE-2022-48873.json
JSON Data
https://api.test.osv.dev/v1/vulns/CVE-2022-48873
Downstream
Related
Published
2024-08-21T06:10:04.024Z
Modified
2026-04-11T12:43:10.671288Z
Summary
misc: fastrpc: Don't remove map on creater_process and device_release
Details

In the Linux kernel, the following vulnerability has been resolved:

misc: fastrpc: Don't remove map on createrprocess and devicerelease

Do not remove the map from the list on error path in fastrpcinitcreateprocess, instead call fastrpcmapput, to avoid use-after-free. Do not remove it on fastrpcdevicerelease either, call fastrpcmap_put instead.

The fastrpcfreemap is the only proper place to remove the map. This is called only after the reference count is 0.

Database specific
{
    "cna_assigner": "Linux",
    "osv_generated_from": "https://github.com/CVEProject/cvelistV5/tree/main/cves/2022/48xxx/CVE-2022-48873.json"
}
References

Affected packages

Git / git.kernel.org/pub/scm/linux/kernel/git/stable/linux.git

Affected ranges

Type
GIT
Repo
https://git.kernel.org/pub/scm/linux/kernel/git/stable/linux.git
Events
Introduced
b49f6d83e290f17e20f4e5cf31288d3bb4955ea6
Fixed
4b5c44e924a571d0ad07054de549624fbc04e4d7
Fixed
193cd853145b63e670bd73740250983af1475330
Fixed
1b7b7bb400dd13dcb03fc6e591bb7ca4664bbec8
Fixed
35ddd482345c43d9eec1f3406c0f20a95ed4054b
Fixed
5bb96c8f9268e2fdb0e5321cbc358ee5941efc15
Type
GIT
Repo
https://git.kernel.org/pub/scm/linux/kernel/git/stable/linux.git
Events
Introduced
0 Unknown introduced commit / All previous commits are affected
Last affected
aaf5aa44934ad069cac805923c49f6968b9a0d49

Database specific

source
"https://storage.googleapis.com/osv-test-cve-osv-conversion/osv-output/CVE-2022-48873.json"

Linux / Kernel

Package

Name
Kernel

Affected ranges

Type
ECOSYSTEM
Events
Introduced
5.2.0
Fixed
5.4.230
Type
ECOSYSTEM
Events
Introduced
5.5.0
Fixed
5.10.165
Type
ECOSYSTEM
Events
Introduced
5.11.0
Fixed
5.15.90
Type
ECOSYSTEM
Events
Introduced
5.16.0
Fixed
6.1.8

Database specific

source
"https://storage.googleapis.com/osv-test-cve-osv-conversion/osv-output/CVE-2022-48873.json"