mxser: fix xmit_buf leak in activate when LSR == 0xff
Published Feb 26, 2025
5.5
MEDIUMCVSS 3.1
EPSS 0.28%
Description
When LSR is 0xff in ->activate() (rather unlike), we return an error. Provided ->shutdown() is not called when ->activate() fails, nothing actually frees the buffer in this case.
Fix this by properly freeing the buffer in a designated label. We jump there also from the "!info->type" if now too.
Affected products
-
- Version StatusaffectedConstraints
- Version StatusaffectedConstraints
- Version StatusaffectedConstraints
- Version StatusaffectedConstraints
- Version StatusaffectedConstraints
- Version StatusaffectedConstraints
- Version StatusaffectedConstraints
- Version StatusaffectedConstraints
- Version StatusaffectedConstraints
- Version
-
- Version 2.6.33StatusaffectedConstraints-
- Version 0StatusunaffectedConstraints<2.6.33
- Version 4.14.276StatusunaffectedConstraints<=4.14.*
- Version 4.19.238StatusunaffectedConstraints<=4.19.*
- Version 4.9.311StatusunaffectedConstraints<=4.9.*
- Version 5.10.110StatusunaffectedConstraints<=5.10.*
- Version 5.15.33StatusunaffectedConstraints<=5.15.*
- Version 5.16.19StatusunaffectedConstraints<=5.16.*
- Version 5.17.2StatusunaffectedConstraints<=5.17.*
- Version 5.18StatusunaffectedConstraints<=*
- Version 5.4.189StatusunaffectedConstraints<=5.4.*
- Version
Default status is the baseline for the product, each version can override it (e.g. patched versions marked unaffected).
| Vendor | Product | Default status | Versions | ||||||||||||||||||||||||||||||||||||
|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|
| Linux | Linux | unaffected |
| ||||||||||||||||||||||||||||||||||||
| Linux | Linux | affected |
|
- ≥ 2.6.33 · < 4.9.311
- ≥ 4.10 · < 4.14.276
- ≥ 4.15 · < 4.19.238
- ≥ 4.20 · < 5.4.189
- ≥ 5.5 · < 5.10.110
- ≥ 5.11 · < 5.15.33
- ≥ 5.16 · < 5.16.19
- ≥ 5.17 · < 5.17.2
No data.
Red Hat Enterprise Linux 10
kernel
Not affected
Red Hat Enterprise Linux 6
kernel
Not affected
Red Hat Enterprise Linux 7
kernel
Not affected
Red Hat Enterprise Linux 7
kernel-rt
Not affected
Red Hat Enterprise Linux 8
kernel
Not affected
Red Hat Enterprise Linux 8
kernel-rt
Not affected
Red Hat Enterprise Linux 9
kernel
Not affected
Red Hat Enterprise Linux 9
kernel-rt
Not affected
| Product | Package | State | Advisory |
|---|---|---|---|
| Red Hat Enterprise Linux 10 | kernel | Not affected | n/a |
| Red Hat Enterprise Linux 6 | kernel | Not affected | n/a |
| Red Hat Enterprise Linux 7 | kernel | Not affected | n/a |
| Red Hat Enterprise Linux 7 | kernel-rt | Not affected | n/a |
| Red Hat Enterprise Linux 8 | kernel | Not affected | n/a |
| Red Hat Enterprise Linux 8 | kernel-rt | Not affected | n/a |
| Red Hat Enterprise Linux 9 | kernel | Not affected | n/a |
| Red Hat Enterprise Linux 9 | kernel-rt | Not affected | n/a |
No package ranges for this CVE.
Remediation
No remediation recorded yet.
References (15)
- https://access.redhat.com/security/cve/CVE-2022-49191 Vendor Advisory
- https://bugzilla.redhat.com/show_bug.cgi?id=2348098 Issue Tracking
- https://euvd.enisa.europa.eu/vulnerability/EUVD-2022-55035 Advisory
- https://git.kernel.org/stable/c/125b7c929fc9b1e5eaa344bceb6367dfa6fd3f9d Patch
- https://git.kernel.org/stable/c/2cd05c38a27bee7fb42aa4d43174d68ac55dac0f Patch
- https://git.kernel.org/stable/c/376922045009f8ea2d20a8fa3475e95b47c41690 Patch
- https://git.kernel.org/stable/c/685b6d16bf89595310b5d61394c9b97cc9505c7c Patch
- https://git.kernel.org/stable/c/6c9041b2f90c0eace73106f22350e1d2c98f5edc Patch
- https://git.kernel.org/stable/c/6dffc2035fbaada60ca8db59e0962e34f760370a Patch
- https://git.kernel.org/stable/c/996291d06851a26678a0fab488b6e1f0677c0576 Patch
- https://git.kernel.org/stable/c/b125b08dbee3611f03f53b71471813ed4ccafcdd Patch
- https://git.kernel.org/stable/c/cd3a4907ee334b40d7aa880c7ab310b154fd5cd4 Patch
- https://lore.kernel.org/linux-cve-announce/2025022616-CVE-2022-49191-ed02@gregkh/T
- https://nvd.nist.gov/vuln/detail/CVE-2022-49191
- https://www.cve.org/CVERecord?id=CVE-2022-49191
Change history (0)
No recorded changes yet.