UBUNTU-CVE-2022-28893
Dashboard / Vulnerabilities / UBUNTU-CVE-2022-28893
UBUNTU-CVE-2022-28893
Summary:
Details: The SUNRPC subsystem in the Linux kernel through 5.17.2 can call xs_xprt_free before ensuring that sockets are in the intended state.
References: https://ubuntu.com/security/CVE-2022-28893, https://www.openwall.com/lists/oss-security/2022/04/11/3, https://www.openwall.com/lists/oss-security/2022/04/11/5, https://github.com/torvalds/linux/commit/f00432063db1a0db484e85193eccc6845435b80e, https://ubuntu.com/security/notices/USN-5544-1, https://ubuntu.com/security/notices/USN-5562-1, https://ubuntu.com/security/notices/USN-5564-1, https://ubuntu.com/security/notices/USN-5566-1, https://ubuntu.com/security/notices/USN-5582-1, https://www.cve.org/CVERecord?id=CVE-2022-28893
Affected packages
Package
Name: linux-hwe-edge
Purl: pkg:deb/ubuntu/linux-hwe-edge?arch=source&distro=xenial
Affected ranges
Type: ECOSYSTEM
Events:
