vulnerability

Debian: CVE-2022-49191: linux -- security update

Severity
7
CVSS
(AV:L/AC:L/Au:N/C:C/I:N/A:C)
Published
2025-02-27
Added
2025-02-27
Modified
2025-02-28

Description

In the Linux kernel, the following vulnerability has been resolved:

mxser: fix xmit_buf leak in activate when LSR == 0xff

When LSR is 0xff in ->activate() (rather unlike), we return an error.
Provided ->shutdown() is not called when ->activate() fails, nothing
actually frees the buffer in this case.

Fix this by properly freeing the buffer in a designated label. We jump
there also from the "!info->type" if now too.

Solution

debian-upgrade-linux
Title
NEW

Explore Exposure Command

Confidently identify and prioritize exposures from endpoint to cloud with full attack surface visibility and threat-aware risk context.