CVE Database
/

CVE-2022-48742

Back to search

CVE-2022-48742

Published: Jun 20, 2024

Modified: May 11, 2026

PUBLISHED

Description

In the Linux kernel, the following vulnerability has been resolved: rtnetlink: make sure to refresh master_dev/m_ops in __rtnl_newlink() While looking at one unrelated syzbot bug, I found the replay logic in __rtnl_newlink() to potentially trigger use-after-free. It is better to clear master_dev and m_ops inside the loop, in case we have to replay it.

VendorProductVersions

Linux

Linux

affected
ba7d49b1f0f8e5f24294a880ed576964059af5ef - < 2cf180360d66bd657e606c1217e0e668e6faa303
affected
ba7d49b1f0f8e5f24294a880ed576964059af5ef - < 7d9211678c0f0624f74cdff36117ab8316697bb8
affected
ba7d49b1f0f8e5f24294a880ed576964059af5ef - < a01e60a1ec6bef9be471fb7182a33c6d6f124e93
affected
ba7d49b1f0f8e5f24294a880ed576964059af5ef - < bd43771ee9759dd9dfae946bff190e2c5a120de5
affected
ba7d49b1f0f8e5f24294a880ed576964059af5ef - < 3bbe2019dd12b8d13671ee6cda055d49637b4c39

+3 more versions

Linux

Linux

affected
3.14
unaffected
0 - < 3.14
unaffected
4.9.300 - <= 4.9.*
unaffected
4.14.265 - <= 4.14.*
unaffected
4.19.228 - <= 4.19.*

+5 more versions

Security Training

Train your team to recognize and prevent security threats with our comprehensive security awareness program.

Start Training

Vulnerability Scanning

Discover vulnerabilities in your applications and infrastructure before attackers do.

Scan Now