CVE-2022-45886: Race Condition
An issue was discovered in the Linux kernel through 6.0.9. drivers/media/dvb-core/dvbnet.c has a .disconnect versus dvbdeviceopen race condition that leads to a use-after-free.
Affected Software
Remediation
Recommended actions to resolve this vulnerability, in priority order.
- Upgrade
Upgrade
debian/linuxto a version that resolves this vulnerability.Fixed in 5.10.223-1Fixed in 5.10.234-1Fixed in 6.1.129-1Fixed in 6.1.135-1Fixed in 6.12.22-1Fixed in 6.12.25-1
Event History
Frequently Asked Questions
What is the severity of CVE-2022-45886?
CVE-2022-45886 is rated as high severity due to the potential for a use-after-free vulnerability in the Linux kernel.
How do I fix CVE-2022-45886?
To fix CVE-2022-45886, update your Linux kernel to a version higher than 6.0.9 or apply the appropriate patches provided by your Linux distribution.
What versions of the Linux kernel are affected by CVE-2022-45886?
CVE-2022-45886 affects the Linux kernel versions up to 6.0.9, including several versions from 2.6.12 to 6.0.9.
Which software components are affected by CVE-2022-45886?
The affected software components include IBM Security Verify Governance, Identity Manager, and multiple versions of the Linux kernel.
Is there a confirmed exploit for CVE-2022-45886?
As of now, there is no publicly available information confirming an active exploit for CVE-2022-45886.