Back to search
CVE-2022-1048
Published: Apr 29, 2022
Modified: Aug 2, 2024
PUBLISHED
Description
A use-after-free flaw was found in the Linux kernel’s sound subsystem in the way a user triggers concurrent calls of PCM hw_params. The hw_free ioctls or similar race condition happens inside ALSA PCM for other ioctls. This flaw allows a local user to crash or potentially escalate their privileges on the system.
| Vendor | Product | Versions |
|---|---|---|
n/a | kernel | affected Linux kernel 5.17-rc9 |
Weaknesses (CWE)
References
https://bugzilla.redhat.com/show_bug.cgi?id=2066706
x_refsource_MISC
DSA-5127
vendor-advisory
x_refsource_DEBIAN
https://security.netapp.com/advisory/ntap-20220629-0001/
x_refsource_CONFIRM
DSA-5173
vendor-advisory
x_refsource_DEBIAN
Security Training
Train your team to recognize and prevent security threats with our comprehensive security awareness program.
Start TrainingVulnerability Scanning
Discover vulnerabilities in your applications and infrastructure before attackers do.
Scan Now