CVE-2022-3636

Name
CVE-2022-3636
Description
A vulnerability was identified in Linux Kernel 33fc42de33278b2b3ec6f3390512987bc29a62b7. This affects the function __mtk_ppe_check_skb of the file drivers/net/ethernet/mediatek/mtk_ppe.c of the component Ethernet Handler. Such manipulation leads to use after free. The name of the patch is 17a5f6a78dc7b8db385de346092d7d9f9dc24df6. It is best practice to apply a patch to resolve this issue. No released Linux Kernel version was ever affected by this CVE.
NVD Severity
unknown
Other trackers
Mailing lists
Exploits
Forges
GitHub (code, issues), Aports (code, issues)

References

Type URI
N/A https://vuldb.com/?id.211935
N/A https://git.kernel.org/pub/scm/linux/kernel/git/pabeni/net-next.git/commit/?id=17a5f6a78dc7b8db385de346092d7d9f9dc24df6
Third Party Advisory https://www.debian.org/security/2023/dsa-5333
cna@vuldb.com https://vuldb.com/cve/CVE-2022-3636
cna@vuldb.com https://vuldb.com/vuln/211935
cna@vuldb.com https://vuldb.com/vuln/211935/cti
cna@vuldb.com https://www.kernel.org/

Match rules

CPE URI Source package Min version Max version
cpe:2.3:o:linux:linux_kernel:-:*:*:*:*:*:*:* linux_kernel == None == -

Vulnerable and fixed packages

Source package Branch Version Maintainer Status