CVE-2022-49461

Summary

In the Linux kernel, the following vulnerability has been resolved:

amt: fix memory leak for advertisement message

When a gateway receives an advertisement message, it extracts relay information and then it should be freed. But the advertisement handler doesn't free it. So, memory leak would occur.

Affected Software

VendorProductVersion RangeStatus
LinuxLinuxcbc21dc1cfe949e37b2a54c71511579f1899e8d4 < 19bb2d57eac86a368839a92117d8a10ab7183623affected
LinuxLinuxcbc21dc1cfe949e37b2a54c71511579f1899e8d4 < e7322da399fb86a2072f008b56f7160afa1b2051affected
LinuxLinuxcbc21dc1cfe949e37b2a54c71511579f1899e8d4 < fe29794c3585d039fefebaa2b5a4932a627ad4fdaffected
LinuxLinux5.16affected
LinuxLinux0 < 5.16unaffected
LinuxLinux5.17.14 <= 5.17.*unaffected
LinuxLinux5.18.3 <= 5.18.*unaffected
LinuxLinux5.19 <= *unaffected

Weaknesses

ADP Enrichment

CISA ADP Vulnrichment

  • SSVC:
  • Exploitation: none
    • Automatable: no
    • Technical Impact: partial

References