跳转到帖子

Amazon Linux AMI: CVE-2022-49015: Security patch for kernel (ALAS-2023-1706)

recommended_posts

发布于
  • Members

Amazon Linux AMI: CVE-2022-49015: Security patch for kernel (ALAS-2023-1706)

Severity
4
CVSS
(AV:L/AC:M/Au:N/C:P/I:P/A:P)
Published
03/17/2023
Created
01/25/2025
Added
01/23/2025
Modified
01/23/2025

Description

In the Linux kernel, the following vulnerability has been resolved:

net: hsr: Fix potential use-after-free

The skb is delivered to netif_rx() which may free it, after calling this,

dereferencing skb may trigger use-after-free.

Solution(s)

  • amazon-linux-upgrade-kernel

References

  • ALAS-2023-1706
  • CVE-2022-49015
  • 查看数 721
  • 已创建
  • 最后回复