PT-2022-6249 · Linux+4 · Linux Kernel+4

Hyunwoo Kim

·

Published

2022-11-15

·

Updated

2026-05-26

·

CVE-2022-45885

CVSS v3.1

7.0

High

VectorAV:L/AC:H/PR:L/UI:N/S:U/C:H/I:H/A:H
Name of the Vulnerable Software and Affected Versions Linux kernel versions prior to 6.0.9
Description The issue is related to a race condition in the Linux kernel's DVB driver, specifically in the dvb frontend.c file. This condition can cause a use-after-free error when a device is disconnected, potentially allowing an attacker to cause a denial of service or elevate their privileges. The estimated number of potentially affected devices is not provided.
Recommendations For Linux kernel versions prior to 6.0.9, update to a version 6.0.9 or later to resolve the issue. As a temporary workaround, consider restricting access to the dvb frontend.c driver to minimize the risk of exploitation.

Exploit

Fix

DoS

Race Condition

Use After Free

Found an issue in the description? Have something to add? Feel free to write us 👾

Weakness Enumeration

Related Identifiers

ALT-PU-2022-3220
ALT-PU-2022-3303
ALT-PU-2022-3364
ALT-PU-2022-3371
ALT-PU-2023-1684
ALT-PU-2023-1741
ALT-PU-2023-1814
ALT-PU-2023-4894
BDU:2023-00646
CVE-2022-45885
ECHO-3900-0B28-C8B3
OPENSUSE-SU-2023_2646-1
OPENSUSE-SU-2023_2871-1
OPENSUSE-SU-2024:12994-1
OPENSUSE-SU-2024:13704-1
SUSE-SU-2023:2500-1
SUSE-SU-2023:2501-1
SUSE-SU-2023:2502-1
SUSE-SU-2023:2507-1
SUSE-SU-2023:2534-1
SUSE-SU-2023:2537-1
SUSE-SU-2023:2538-1
SUSE-SU-2023:2611-1
SUSE-SU-2023:2646-1
SUSE-SU-2023:2651-1
SUSE-SU-2023:2653-1
SUSE-SU-2023:2782-1
SUSE-SU-2023:2805-1
SUSE-SU-2023:2809-1
SUSE-SU-2023:2871-1

Affected Products

Alt Linux
Debian
Linux Kernel
Red Os
Suse