moxart: fix potential use-after-free on remove path
Published Feb 25, 2024
7.8
HIGHCVSS 3.1
EPSS 0.31%
Description
It was reported that the mmc host structure could be accessed after it was freed in moxart_remove(), so fix this by saving the base register of the device and using it instead of the pointer dereference.
Affected products
-
- Version StatusaffectedConstraints
- Version StatusaffectedConstraints
- Version StatusaffectedConstraints
- Version StatusaffectedConstraints
- Version StatusaffectedConstraints
- Version StatusaffectedConstraints
- Version StatusaffectedConstraints
- Version StatusaffectedConstraints
- Version
-
- Version 3.16StatusaffectedConstraints-
- Version 0StatusunaffectedConstraints<3.16
- Version 4.14.266StatusunaffectedConstraints<=4.14.*
- Version 4.19.229StatusunaffectedConstraints<=4.19.*
- Version 4.9.301StatusunaffectedConstraints<=4.9.*
- Version 5.10.100StatusunaffectedConstraints<=5.10.*
- Version 5.15.23StatusunaffectedConstraints<=5.15.*
- Version 5.16.9StatusunaffectedConstraints<=5.16.*
- Version 5.17StatusunaffectedConstraints<=*
- Version 5.4.179StatusunaffectedConstraints<=5.4.*
- Version
Default status is the baseline for the product, each version can override it (e.g. patched versions marked unaffected).
| Vendor | Product | Default status | Versions | |||||||||||||||||||||||||||||||||
|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|
| Linux | Linux | unaffected |
| |||||||||||||||||||||||||||||||||
| Linux | Linux | affected |
|
- ≥ 3.16 · < 4.9.301
- ≥ 4.10 · < 4.14.266
- ≥ 4.15 · < 4.19.229
- ≥ 4.20 · < 5.4.179
- ≥ 5.5 · < 5.10.100
- ≥ 5.11 · < 5.15.23
- ≥ 5.16 · < 5.16.9
No data.
Red Hat Enterprise Linux 6
kernel
Not affected
Red Hat Enterprise Linux 7
kernel
Not affected
Red Hat Enterprise Linux 7
kernel-rt
Not affected
Red Hat Enterprise Linux 8
kernel
Not affected
Red Hat Enterprise Linux 8
kernel-rt
Not affected
Red Hat Enterprise Linux 9
kernel
Not affected
Red Hat Enterprise Linux 9
kernel-rt
Not affected
| Product | Package | State | Advisory |
|---|---|---|---|
| Red Hat Enterprise Linux 6 | kernel | Not affected | n/a |
| Red Hat Enterprise Linux 7 | kernel | Not affected | n/a |
| Red Hat Enterprise Linux 7 | kernel-rt | Not affected | n/a |
| Red Hat Enterprise Linux 8 | kernel | Not affected | n/a |
| Red Hat Enterprise Linux 8 | kernel-rt | Not affected | n/a |
| Red Hat Enterprise Linux 9 | kernel | Not affected | n/a |
| Red Hat Enterprise Linux 9 | kernel-rt | Not affected | n/a |
No package ranges for this CVE.
Remediation
Red Hat statement
No Red Hat products are not affected by this flaw, as the MOXART SD/MMC Host Controller support (CONFIG_MMC_MOXART) is not enabled in any shipping kernel release.
Red Hat mitigation
Mitigation for this issue is either not available or the currently available options don't meet the Red Hat Product Security criteria comprising ease of use and deployment, applicability to widespread installation base or stability.
References (14)
- https://access.redhat.com/security/cve/CVE-2022-48626 Vendor Advisory
- https://bugzilla.redhat.com/show_bug.cgi?id=2266029 Issue Tracking
- https://euvd.enisa.europa.eu/vulnerability/EUVD-2022-51321 Advisory
- https://git.kernel.org/stable/c/3a0a7ec5574b510b067cfc734b8bdb6564b31d4e Patch
- https://git.kernel.org/stable/c/7f901d53f120d1921f84f7b9b118e87e94b403c5 Patch
- https://git.kernel.org/stable/c/9c25d5ff1856b91bd4365e813f566cb59aaa9552 Patch
- https://git.kernel.org/stable/c/af0e6c49438b1596e4be8a267d218a0c88a42323 Patch
- https://git.kernel.org/stable/c/bd2db32e7c3e35bd4d9b8bbff689434a50893546 Patch
- https://git.kernel.org/stable/c/be93028d306dac9f5b59ebebd9ec7abcfc69c156 Patch
- https://git.kernel.org/stable/c/e6f580d0b3349646d4ee1ce0057eb273e8fb7e2e Patch
- https://git.kernel.org/stable/c/f5dc193167591e88797262ec78515a0cbe79ff5f Patch
- https://lore.kernel.org/linux-cve-announce/2024022558-CVE-2022-48626-8a90@gregkh/T/#u
- https://nvd.nist.gov/vuln/detail/CVE-2022-48626
- https://www.cve.org/CVERecord?id=CVE-2022-48626
Change history (0)
No recorded changes yet.