Back

HIGH

kernel: network backend may cause Linux netfront to use freed SKBs (XSA-405)

Published Jul 5, 2022

Description

network backend may cause Linux netfront to use freed SKBs While adding logic to support XDP (eXpress Data Path), a code label was moved in a way allowing for SKBs having references (pointers) retained for further processing to nevertheless be freed.

Affected products

Remediation

Red Hat statement

Keeping this flaw Moderate, because only a denial of service is possible (A:H) as result of memory leak problem. The memory leak can happen because instead of removing skb, keeping it in the networking stack forever. The CVSS score is higher, than usually for Moderate, because kept "C:H" and "I:H" too in case maybe potentially would be possible privilege escalation too.

Weaknesses (1)

References (11)

Change history (0)

No recorded changes yet.

Sources
CVE.org / MITRE
Status PUBLISHED
Assigner XEN
Published Jul 5, 2022
Updated Aug 3, 2024
Reserved Jun 15, 2022
NVD
Status Modified
Modified Jun 17, 2026
Red Hat
Severity Moderate
Public date Jul 4, 2022
ENISA EUVD
Assigner XEN
Published Jul 5, 2022
Updated Aug 3, 2024
Exploited since n/a
EUVD-2022-36782