Skip to content

kernel CVE-2022-28893

Moderate
arnaldo2792 published GHSA-m63c-5pgq-vm26 Jun 10, 2022

Package

kernel-5.10 (bottlerocket)

Affected versions

< 1.8.0

Patched versions

1.8.0
kernel-5.4 (bottlerocket)
< 1.8.0
1.8.0

Description

The SUNRPC subsystem in the Linux kernel through 5.17.2 can call xs_xprt_free before ensuring that sockets are in the intended state.

Severity

Moderate

CVE ID

CVE-2022-28893

Weaknesses

No CWEs