PT-2024-11805 · Linux+5 · Linux Kernel+5

Rafael Richter

·

Published

2022-02-09

·

Updated

2024-09-27

·

CVE-2022-48808

CVSS v3.1

5.5

Medium

VectorAV:L/AC:L/PR:L/UI:N/S:U/C:N/I:N/A:H
Name of the Vulnerable Software and Affected Versions Linux kernel versions prior to 5.16.5-00042-g8f5585009b24
Description The issue arises when a system with LX2160A and Marvell DSA switches undergoes a reboot while the DSA master (dpaa2-eth) is active. This leads to a panic due to the deregistration of the master causing a dev close(), which gets notified as NETDEV GOING DOWN to dsa slave netdevice event(). However, since dsa switch shutdown() has already run and unregistered the DSA slave interfaces, the NETDEV GOING DOWN handler's attempt to call dev close many() on those slave interfaces results in a problem. The previous approach to avoid this issue by unregistering the slave interfaces after dsa switch shutdown() was called is deemed improper. Instead, resetting the master->dsa ptr pointer to NULL after the slaves have stopped being uppers of the DSA master resolves the issue by making DSA ignore future notifier events on the master.
Recommendations To resolve this issue, update the Linux kernel to a version that includes the fix for the net: dsa: fix panic when DSA master device unbinds on shutdown vulnerability. Specifically, ensure that the kernel version is 5.16.5-00042-g8f5585009b24 or later. If updating is not immediately possible, consider implementing a workaround by resetting the master->dsa ptr pointer to NULL after the slaves have stopped being uppers of the DSA master to prevent the NETDEV GOING DOWN handler from attempting to call dev close many() on unregistered slave interfaces.

Exploit

Fix

Improper Resource Release

Found an issue in the description? Have something to add? Feel free to write us 👾

Weakness Enumeration

Related Identifiers

BDU:2025-03965
CVE-2022-48808
OPENSUSE-SU-2024_3190-1
OPENSUSE-SU-2024_3209-1
OPENSUSE-SU-2024_3483-1
SUSE-SU-2024:3190-1
SUSE-SU-2024:3209-1
SUSE-SU-2024:3483-1
USN-6917-1
USN-6919-1
USN-6927-1
USN-7019-1

Affected Products

Astra Linux
Linuxmint
Linux Kernel
Red Os
Suse
Ubuntu