CVE Database
/

CVE-2022-48788

Back to search

CVE-2022-48788

Published: Jul 16, 2024

Modified: May 11, 2026

PUBLISHED

Description

In the Linux kernel, the following vulnerability has been resolved: nvme-rdma: fix possible use-after-free in transport error_recovery work While nvme_rdma_submit_async_event_work is checking the ctrl and queue state before preparing the AER command and scheduling io_work, in order to fully prevent a race where this check is not reliable the error recovery work must flush async_event_work before continuing to destroy the admin queue after setting the ctrl state to RESETTING such that there is no race .submit_async_event and the error recovery handler itself changing the ctrl state.

VendorProductVersions

Linux

Linux

affected
7110230719602852481c2793d054f866b2bf4a2b - < 5593f72d1922403c11749532e3a0aa4cf61414e9
affected
7110230719602852481c2793d054f866b2bf4a2b - < d411b2a5da68b8a130c23097014434ac140a2ace
affected
7110230719602852481c2793d054f866b2bf4a2b - < 324f5bdc52ecb6a6dadb31a62823ef8c709d1439
affected
7110230719602852481c2793d054f866b2bf4a2b - < 646952b2210f19e584d2bf9eb5d092abdca2fcc1
affected
7110230719602852481c2793d054f866b2bf4a2b - < ea86027ac467a055849c4945906f799e7f65ab99

+1 more versions

Linux

Linux

affected
4.8
unaffected
0 - < 4.8
unaffected
4.19.231 - <= 4.19.*
unaffected
5.4.181 - <= 5.4.*
unaffected
5.10.102 - <= 5.10.*

+3 more versions

Security Training

Train your team to recognize and prevent security threats with our comprehensive security awareness program.

Start Training

Vulnerability Scanning

Discover vulnerabilities in your applications and infrastructure before attackers do.

Scan Now