GSD-2022-1002809

Source
https://data.gsd.id/GSD-2022-1002809
Import Source
https://github.com/cloudsecurityalliance/gsd-database/blob/main/2022/1002xxx/GSD-2022-1002809.json
JSON Data
https://api.osv.dev/v1/vulns/GSD-2022-1002809
Published
2022-06-28T18:20:53.915746Z
Modified
2023-02-22T07:54:13.857911Z
Summary
ASoC: SOF: ipc3-topology: Set scontrol->priv to NULL after freeing it
Details

ASoC: SOF: ipc3-topology: Set scontrol->priv to NULL after freeing it

This is an automated ID intended to aid in discovery of potential security vulnerabilities. The actual impact and attack plausibility have not yet been proven. This ID is fixed in Linux Kernel version v5.18.3 by commit d808f3b74b3101a8098a10233d12025f9f5425a8, it was introduced in version v5.18 by commit b5cee8feb1d482a9d07b677f4f2f9565bacda53e. For more details please see the references link.

References

Affected packages

Linux / Kernel

Package

Name
Kernel

Affected ranges

Type
GIT
Repo
https://git.kernel.org/pub/scm/linux/kernel/git/stable/linux.git/
Events
Introduced
b5cee8feb1d482a9d07b677f4f2f9565bacda53e
Limit
d808f3b74b3101a8098a10233d12025f9f5425a8

Affected versions

v5.*
v5.17
v5.17-rc2
v5.17-rc3
v5.17-rc4
v5.17-rc5
v5.17-rc6
v5.17-rc7
v5.17-rc8
v5.18
v5.18-rc1
v5.18-rc2
v5.18-rc3
v5.18-rc4
v5.18-rc5
v5.18-rc6
v5.18-rc7
v5.18.1
v5.18.2

Database specific

source
"https://github.com/cloudsecurityalliance/gsd-database/blob/main/2022/1002xxx/GSD-2022-1002809.json"