summaryrefslogtreecommitdiffstats
path: root/retired/CVE-2022-45888
diff options
context:
space:
mode:
authorMoritz Muehlenhoff <jmm@debian.org>2023-08-17 12:52:06 +0200
committerMoritz Muehlenhoff <jmm@debian.org>2023-08-17 12:52:06 +0200
commit43c86edb5fd32645f32aad3dc0e20aa2acc58fb0 (patch)
treeed37545e6b6d1e0c014b7081d3970e49c1f880dd /retired/CVE-2022-45888
parent564252d480c57ae9803c8bdff4b2983f040fa791 (diff)
retire
Diffstat (limited to 'retired/CVE-2022-45888')
-rw-r--r--retired/CVE-2022-4588816
1 files changed, 16 insertions, 0 deletions
diff --git a/retired/CVE-2022-45888 b/retired/CVE-2022-45888
new file mode 100644
index 00000000..68dcc341
--- /dev/null
+++ b/retired/CVE-2022-45888
@@ -0,0 +1,16 @@
+Description: char: xillybus: Fix use-after-free in xillyusb_open()
+References:
+ https://lore.kernel.org/all/20221022175404.GA375335@ubuntu/
+Notes:
+ bwh> Driver was added in 5.14.
+ carnil> Negligible security impact, would need physical access to
+ carnil> "exploit"
+Bugs:
+upstream: released (6.2-rc1) [282a4b71816b6076029017a7bab3a9dcee12a920]
+6.1-upstream-stable: ignored "non issue, if anyone has physical access to trigger this they can do more harm anyway"
+5.10-upstream-stable: N/A "Vulnerable code not present"
+4.19-upstream-stable: N/A "Vulnerable code not present"
+sid: released (6.3.7-1)
+6.1-bookworm-security: ignored "non issue, if anyone has physical access to trigger this they can do more harm anyway"
+5.10-bullseye-security: N/A "Vulnerable code not present"
+4.19-buster-security: N/A "Vulnerable code not present"

© 2014-2024 Faster IT GmbH | imprint | privacy policy