CLSA-2023-1682705952
Dashboard / Vulnerabilities / CLSA-2023-1682705952
CLSA-2023-1682705952
Summary: kernel: Fix of 7 CVEs
Details: - mISDN: fix use-after-free bugs in l1oip timer handlers {CVE-2022-3565} - media: rc: Fix use-after-free bugs caused by ene_tx_irqsim() {CVE-2023-1118} - Bluetooth: btsdio: fix use after free bug in btsdio_remove due to unfinished work {CVE-2023-1989} - proc: proc_skip_spaces() shouldn't think it is working on C strings {CVE-2022-4378} - proc: avoid integer type confusion in get_proc_long {CVE-2022-4378} - floppy: use a statically allocated error counter {CVE-2022-1652} - af_key: add __GFP_ZERO flag for compose_sadb_supported in function pfkey_register {CVE-2022-1353} - usb: mon: make mmapped memory read only {CVE-2022-43750}
Affected packages
Package
Name: kernel
Purl: pkg:rpm/tuxcare/kernel?distro=centos-6
Affected ranges
Type: ECOSYSTEM
Events:
