In the Linux kernel, the following vulnerability has been resolved:
netfilter: nf_queue: fix possible use-after-free
Eric Dumazet says:
  The sock_hold() side seems suspect, because there is no guarantee
  that sk_refcnt is not already 0.
On failure, we cannot queue the packet and need to indicate an
error.  The packet will be dropped by the caller.
v2: split skb prefetch hunk into separate change
                
            References
                    Configurations
                    Configuration 1 (hide)
| 
 | 
History
                    No history.
Information
                Published : 2024-08-22 02:15
Updated : 2024-09-12 13:24
NVD link : CVE-2022-48911
Mitre link : CVE-2022-48911
CVE.ORG link : CVE-2022-48911
JSON object : View
Products Affected
                linux
- linux_kernel
CWE
                
                    
                        
                        CWE-416
                        
            Use After Free
