Executive Summary

Informations
Name CVE-2022-48626 First vendor Publication 2024-02-26
Vendor Cve Last vendor Modification 2024-04-17

Security-Database Scoring CVSS v3

Cvss vector : CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H
Overall CVSS Score 7.8
Base Score 7.8 Environmental Score 7.8
impact SubScore 5.9 Temporal Score 7.8
Exploitabality Sub Score 1.8
 
Attack Vector Local Attack Complexity Low
Privileges Required Low User Interaction None
Scope Unchanged Confidentiality Impact High
Integrity Impact High Availability Impact High
Calculate full CVSS 3.0 Vectors scores

Security-Database Scoring CVSS v2

Cvss vector :
Cvss Base Score N/A Attack Range N/A
Cvss Impact Score N/A Attack Complexity N/A
Cvss Expoit Score N/A Authentication N/A
Calculate full CVSS 2.0 Vectors scores

Detail

In the Linux kernel, the following vulnerability has been resolved:

moxart: fix potential use-after-free on remove path

It was reported that the mmc host structure could be accessed after it was freed in moxart_remove(), so fix this by saving the base register of the device and using it instead of the pointer dereference.

Original Source

Url : http://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2022-48626

CWE : Common Weakness Enumeration

% Id Name
100 % CWE-416 Use After Free

CPE : Common Platform Enumeration

TypeDescriptionCount
Application 7
Os 3460

Sources (Detail)

https://git.kernel.org/stable/c/3a0a7ec5574b510b067cfc734b8bdb6564b31d4e
https://git.kernel.org/stable/c/7f901d53f120d1921f84f7b9b118e87e94b403c5
https://git.kernel.org/stable/c/9c25d5ff1856b91bd4365e813f566cb59aaa9552
https://git.kernel.org/stable/c/af0e6c49438b1596e4be8a267d218a0c88a42323
https://git.kernel.org/stable/c/bd2db32e7c3e35bd4d9b8bbff689434a50893546
https://git.kernel.org/stable/c/be93028d306dac9f5b59ebebd9ec7abcfc69c156
https://git.kernel.org/stable/c/e6f580d0b3349646d4ee1ce0057eb273e8fb7e2e
https://git.kernel.org/stable/c/f5dc193167591e88797262ec78515a0cbe79ff5f
Source Url

Alert History

If you want to see full details history, please login or register.
0
1
Date Informations
2024-04-18 00:27:47
  • Multiple Updates
2024-02-26 21:27:26
  • First insertion