CVE-2022-1048

Description

A use-after-free flaw was found in the Linux kernels sound subsystem in the way a user triggers concurrent calls of PCM hw_params. The hw_free ioctls or similar race condition happens inside ALSA PCM for other ioctls. This flaw allows a local user to crash or potentially escalate their privileges on the system.

Risk Information

Base Score
7.0
MODERATE
Vector
CVSS:3.1/AV:L/AC:H/PR:L/UI:N/S:U/C:H/I:H/A:H
EPSS Score
Exploitation Probability
0.013

Associated Vulnerability

VulnerabilityOS Platform
Linux kernel for OEM systems (USN-5381-1) linux-image-oem-20.04_5.14.0.1033.30_amd64.debLinux
Linux kernel for OEM systems (USN-5381-1) linux-image-oem-20.04b_5.14.0.1033.30_amd64.debLinux
Linux kernel for OEM systems (USN-5381-1) linux-image-oem-20.04c_5.14.0.1033.30_amd64.debLinux
Linux kernel for OEM systems (USN-5381-1) linux-image-oem-20.04d_5.14.0.1033.30_amd64.debLinux
Linux kernel for OEM systems (USN-5381-1) linux-image-5.14.0-1033-oem_5.14.0-1033.36_amd64.debLinux
SUSE-SU-2022:1196-1(SUSE Linux Enterprise Server 12-SP5 ) kernel-default-4.12.14-122.116.1.x86_64.rpmLinux
SUSE-SU-2022:1196-1(SUSE Linux Enterprise Server 12-SP5 ) kernel-default-base-4.12.14-122.116.1.x86_64.rpmLinux
SUSE-SU-2022:1196-1(SUSE Linux Enterprise Server 12-SP5 ) kernel-default-base-debuginfo-4.12.14-122.116.1.x86_64.rpmLinux
SUSE-SU-2022:1196-1(SUSE Linux Enterprise Server 12-SP5 ) kernel-default-debuginfo-4.12.14-122.116.1.x86_64.rpmLinux
SUSE-SU-2022:1196-1(SUSE Linux Enterprise Server 12-SP5 ) kernel-default-debugsource-4.12.14-122.116.1.x86_64.rpmLinux
SUSE-SU-2022:1196-1(SUSE Linux Enterprise Server 12-SP5 ) kernel-default-devel-4.12.14-122.116.1.x86_64.rpmLinux
SUSE-SU-2022:1196-1(SUSE Linux Enterprise Server 12-SP5 ) kernel-default-devel-debuginfo-4.12.14-122.116.1.x86_64.rpmLinux
SUSE-SU-2022:1196-1(SUSE Linux Enterprise Server 12-SP5 ) kernel-devel-4.12.14-122.116.1.noarch.rpmLinux
SUSE-SU-2022:1196-1(SUSE Linux Enterprise Server 12-SP5 ) kernel-macros-4.12.14-122.116.1.noarch.rpmLinux
SUSE-SU-2022:1196-1(SUSE Linux Enterprise Server 12-SP5 ) kernel-source-4.12.14-122.116.1.noarch.rpmLinux
SUSE-SU-2022:1196-1(SUSE Linux Enterprise Server 12-SP5 ) kernel-syms-4.12.14-122.116.1.x86_64.rpmLinux
SUSE-SU-2022:1266-1(SUSE Linux Enterprise Server 12-SP5 ) kernel-azure-4.12.14-16.94.1.x86_64.rpmLinux
SUSE-SU-2022:1266-1(SUSE Linux Enterprise Server 12-SP5 ) kernel-azure-base-4.12.14-16.94.1.x86_64.rpmLinux
SUSE-SU-2022:1266-1(SUSE Linux Enterprise Server 12-SP5 ) kernel-azure-base-debuginfo-4.12.14-16.94.1.x86_64.rpmLinux
SUSE-SU-2022:1266-1(SUSE Linux Enterprise Server 12-SP5 ) kernel-azure-debuginfo-4.12.14-16.94.1.x86_64.rpmLinux
SUSE-SU-2022:1266-1(SUSE Linux Enterprise Server 12-SP5 ) kernel-azure-debugsource-4.12.14-16.94.1.x86_64.rpmLinux
SUSE-SU-2022:1266-1(SUSE Linux Enterprise Server 12-SP5 ) kernel-azure-devel-4.12.14-16.94.1.x86_64.rpmLinux
SUSE-SU-2022:1266-1(SUSE Linux Enterprise Server 12-SP5 ) kernel-devel-azure-4.12.14-16.94.1.noarch.rpmLinux
SUSE-SU-2022:1266-1(SUSE Linux Enterprise Server 12-SP5 ) kernel-source-azure-4.12.14-16.94.1.noarch.rpmLinux
SUSE-SU-2022:1266-1(SUSE Linux Enterprise Server 12-SP5 ) kernel-syms-azure-4.12.14-16.94.1.x86_64.rpmLinux
Linux kernel (USN-5469-1) linux-image-aws_5.15.0.1011.12_amd64.debLinux
Linux kernel (USN-5469-1) linux-image-gcp_5.15.0.1008.8_amd64.debLinux
Linux kernel (USN-5469-1) linux-image-gke_5.15.0.1008.12_amd64.debLinux
Linux kernel (USN-5469-1) linux-image-ibm_5.15.0.1007.7_amd64.debLinux
Linux kernel (USN-5469-1) linux-image-kvm_5.15.0.1010.9_amd64.debLinux
Linux kernel (USN-5469-1) linux-image-azure_5.15.0.1010.10_amd64.debLinux
Linux kernel (USN-5469-1) linux-image-oracle_5.15.0.1009.8_amd64.debLinux
Linux kernel (USN-5469-1) linux-image-generic_5.15.0.37.39_amd64.debLinux
Linux kernel (USN-5469-1) linux-image-virtual_5.15.0.37.39_amd64.debLinux
Linux kernel (USN-5469-1) linux-image-gke-5.15_5.15.0.1008.12_amd64.debLinux
Linux kernel (USN-5469-1) linux-image-oem-20.04_5.15.0.37.39_amd64.debLinux
Linux kernel (USN-5469-1) linux-image-intel-iotg_5.15.0.1008.9_amd64.debLinux
Linux kernel (USN-5469-1) linux-image-lowlatency_5.15.0.37.37_amd64.debLinux
Linux kernel (USN-5469-1) linux-image-5.15.0-1007-ibm_5.15.0-1007.8_amd64.debLinux
Linux kernel (USN-5469-1) linux-image-5.15.0-1008-gcp_5.15.0-1008.12_amd64.debLinux
Linux kernel (USN-5469-1) linux-image-5.15.0-1008-gke_5.15.0-1008.10_amd64.debLinux
Linux kernel (USN-5469-1) linux-image-5.15.0-1010-kvm_5.15.0-1010.11_amd64.debLinux
Linux kernel (USN-5469-1) linux-image-5.15.0-1011-aws_5.15.0-1011.14_amd64.debLinux
Linux kernel (USN-5469-1) linux-image-5.15.0-1010-azure_5.15.0-1010.12_amd64.debLinux
Linux kernel (USN-5469-1) linux-image-5.15.0-37-generic_5.15.0-37.39_amd64.debLinux
Linux kernel (USN-5469-1) linux-image-generic-hwe-22.04_5.15.0.37.39_amd64.debLinux
Linux kernel (USN-5469-1) linux-image-virtual-hwe-22.04_5.15.0.37.39_amd64.debLinux
Linux kernel (USN-5469-1) linux-image-5.15.0-1009-oracle_5.15.0-1009.12_amd64.debLinux
Linux kernel (USN-5469-1) linux-image-5.15.0-37-lowlatency_5.15.0-37.39_amd64.debLinux
Linux kernel (USN-5469-1) linux-image-lowlatency-hwe-22.04_5.15.0.37.37_amd64.debLinux
Linux kernel (USN-5469-1) linux-image-5.15.0-1008-intel-iotg_5.15.0-1008.11_amd64.debLinux
Kernel-uek update (ELSA-2022-9477) kernel-uek-4.14.35-2047.514.3.el7uek.x86_64.rpmLinux
Kernel-uek-debug update (ELSA-2022-9477) kernel-uek-debug-4.14.35-2047.514.3.el7uek.x86_64.rpmLinux
Kernel-uek-debug-devel update (ELSA-2022-9477) kernel-uek-debug-devel-4.14.35-2047.514.3.el7uek.x86_64.rpmLinux
Kernel-uek-devel update (ELSA-2022-9477) kernel-uek-devel-4.14.35-2047.514.3.el7uek.x86_64.rpmLinux
Kernel-uek-doc update (ELSA-2022-9477) kernel-uek-doc-4.14.35-2047.514.3.el7uek.noarch.rpmLinux
Kernel-uek-tools update (ELSA-2022-9477) kernel-uek-tools-4.14.35-2047.514.3.el7uek.x86_64.rpmLinux
Kernel-uek update (ELSA-2022-9479) kernel-uek-5.4.17-2136.308.7.el8uek.x86_64.rpmLinux
Kernel-uek-debug update (ELSA-2022-9479) kernel-uek-debug-5.4.17-2136.308.7.el8uek.x86_64.rpmLinux
Kernel-uek-debug-devel update (ELSA-2022-9479) kernel-uek-debug-devel-5.4.17-2136.308.7.el8uek.x86_64.rpmLinux
Kernel-uek-devel update (ELSA-2022-9479) kernel-uek-devel-5.4.17-2136.308.7.el8uek.x86_64.rpmLinux
Kernel-uek-doc update (ELSA-2022-9479) kernel-uek-doc-5.4.17-2136.308.7.el8uek.noarch.rpmLinux
Kernel-uek-container update (ELSA-2022-9480) kernel-uek-container-5.4.17-2136.308.7.el8.x86_64.rpmLinux
Kernel-uek-container-debug update (ELSA-2022-9480) kernel-uek-container-debug-5.4.17-2136.308.7.el8.x86_64.rpmLinux
Linux kernel (USN-5560-1) linux-image-kvm_4.15.0.1127.120_amd64.debLinux
Linux kernel (USN-5560-1) linux-image-generic_4.15.0.193.178_i386.debLinux
Linux kernel (USN-5560-1) linux-image-generic_4.15.0.193.178_amd64.debLinux
Linux kernel (USN-5560-1) linux-image-virtual_4.15.0.193.178_i386.debLinux
Linux kernel (USN-5560-1) linux-image-virtual_4.15.0.193.178_amd64.debLinux
Linux kernel (USN-5560-1) linux-image-dell300x_4.15.0.1053.53_amd64.debLinux
Linux kernel (USN-5560-1) linux-image-lowlatency_4.15.0.193.178_i386.debLinux
Linux kernel (USN-5560-1) linux-image-lowlatency_4.15.0.193.178_amd64.debLinux
Linux kernel (USN-5560-1) linux-image-aws-lts-18.04_4.15.0.1139.139_amd64.debLinux
Linux kernel (USN-5560-1) linux-image-gcp-lts-18.04_4.15.0.1135.151_amd64.debLinux
Linux kernel (USN-5560-1) linux-image-4.15.0-1125-kvm_4.15.0-1125.130_amd64.debLinux
Linux kernel (USN-5560-1) linux-image-4.15.0-1134-gcp_4.15.0-1134.150_amd64.debLinux
Linux kernel (USN-5560-1) linux-image-4.15.0-1139-aws_4.15.0-1139.150_amd64.debLinux
Linux kernel (USN-5560-1) linux-image-azure-lts-18.04_4.15.0.1150.120_amd64.debLinux
Linux kernel (USN-5560-1) linux-image-oracle-lts-18.04_4.15.0.1105.112_amd64.debLinux
Linux kernel (USN-5560-1) linux-image-4.15.0-1149-azure_4.15.0-1149.164_amd64.debLinux
Linux kernel (USN-5560-1) linux-image-4.15.0-1104-oracle_4.15.0-1104.115_amd64.debLinux
Linux kernel (USN-5560-1) linux-image-4.15.0-191-generic_4.15.0-191.202_i386.debLinux
Linux kernel (USN-5560-1) linux-image-4.15.0-191-generic_4.15.0-191.202_amd64.debLinux
Linux kernel (USN-5560-1) linux-image-4.15.0-1051-dell300x_4.15.0-1051.56_amd64.debLinux
Linux kernel (USN-5560-1) linux-image-4.15.0-191-lowlatency_4.15.0-191.202_i386.debLinux
Linux kernel (USN-5560-1) linux-image-4.15.0-191-lowlatency_4.15.0-191.202_amd64.debLinux
Linux kernel (USN-5562-1) linux-image-aws_5.4.0.1089.68_amd64.debLinux
Linux kernel (USN-5562-1) linux-image-gcp_5.4.0.1093.71_amd64.debLinux
Linux kernel (USN-5562-1) linux-image-gke_5.13.0.1015.18~20.04.1_amd64.debLinux
Linux kernel (USN-5562-1) linux-image-ibm_5.4.0.1037.50_amd64.debLinux
Linux kernel (USN-5562-1) linux-image-ibm_5.4.0.1037.65_amd64.debLinux
Linux kernel (USN-5562-1) linux-image-kvm_5.4.0.1075.72_amd64.debLinux
Linux kernel (USN-5562-1) linux-image-oem_5.4.0.132.132_amd64.debLinux
Linux kernel (USN-5562-1) linux-image-oem_5.4.0.132.148~18.04.109_amd64.debLinux
Linux kernel (USN-5562-1) linux-image-azure_5.4.0.1095.71_amd64.debLinux
Linux kernel (USN-5562-1) linux-image-gkeop_5.4.0.1057.57_amd64.debLinux
Linux kernel (USN-5562-1) linux-image-oracle_5.4.0.1087.96~18.04.63_amd64.debLinux
Linux kernel (USN-5562-1) linux-image-generic_5.4.0.125.126_amd64.debLinux
Linux kernel (USN-5562-1) linux-image-gke-5.4_5.4.0.1087.94_amd64.debLinux
Linux kernel (USN-5562-1) linux-image-gke-5.4_5.4.0.1080.86~18.04.42_amd64.debLinux
Linux kernel (USN-5562-1) linux-image-virtual_5.4.0.125.126_amd64.debLinux
Linux kernel (USN-5562-1) linux-image-oem-osp1_5.4.0.132.132_amd64.debLinux
Linux kernel (USN-5562-1) linux-image-oem-osp1_5.4.0.132.148~18.04.109_amd64.debLinux
Linux kernel (USN-5562-1) linux-image-gkeop-5.4_5.4.0.1057.57_amd64.debLinux
Linux kernel (USN-5562-1) linux-image-gkeop-5.4_5.4.0.1051.54~18.04.48_amd64.debLinux
Linux kernel (USN-5562-1) linux-image-lowlatency_5.4.0.125.126_amd64.debLinux
Linux kernel (USN-5562-1) linux-image-aws-lts-20.04_5.4.0.1089.88_amd64.debLinux
Linux kernel (USN-5562-1) linux-image-gcp-lts-20.04_5.4.0.1093.97_amd64.debLinux
Linux kernel (USN-5562-1) linux-image-ibm-lts-20.04_5.4.0.1037.65_amd64.debLinux
Linux kernel (USN-5562-1) linux-image-5.4.0-1031-ibm_5.4.0-1031.35_amd64.debLinux
Linux kernel (USN-5562-1) linux-image-5.4.0-1031-ibm_5.4.0-1031.35~18.04.1_amd64.debLinux
Linux kernel (USN-5562-1) linux-image-5.4.0-1073-kvm_5.4.0-1073.78_amd64.debLinux
Linux kernel (USN-5562-1) linux-image-5.4.0-1080-gke_5.4.0-1080.86_amd64.debLinux
Linux kernel (USN-5562-1) linux-image-5.4.0-1080-gke_5.4.0-1080.86~18.04.1_amd64.debLinux
Linux kernel (USN-5562-1) linux-image-5.4.0-1083-aws_5.4.0-1083.90_amd64.debLinux
Linux kernel (USN-5562-1) linux-image-5.4.0-1083-aws_5.4.0-1083.90~18.04.1_amd64.debLinux
Linux kernel (USN-5562-1) linux-image-5.4.0-1086-gcp_5.4.0-1086.94_amd64.debLinux
Linux kernel (USN-5562-1) linux-image-5.4.0-1086-gcp_5.4.0-1086.94~18.04.1_amd64.debLinux
Linux kernel (USN-5562-1) linux-image-azure-lts-20.04_5.4.0.1095.91_amd64.debLinux
Linux kernel (USN-5562-1) linux-image-5.4.0-1051-gkeop_5.4.0-1051.54_amd64.debLinux
Linux kernel (USN-5562-1) linux-image-5.4.0-1051-gkeop_5.4.0-1051.54~18.04.1_amd64.debLinux
Linux kernel (USN-5562-1) linux-image-5.4.0-1089-azure_5.4.0-1089.94_amd64.debLinux
Linux kernel (USN-5562-1) linux-image-5.4.0-1089-azure_5.4.0-1089.94~18.04.1_amd64.debLinux
Linux kernel (USN-5562-1) linux-image-oracle-lts-20.04_5.4.0.1087.83_amd64.debLinux
Linux kernel (USN-5562-1) linux-image-5.4.0-1081-oracle_5.4.0-1081.89_amd64.debLinux
Linux kernel (USN-5562-1) linux-image-5.4.0-1081-oracle_5.4.0-1081.89~18.04.1_amd64.debLinux
Linux kernel (USN-5562-1) linux-image-5.4.0-124-generic_5.4.0-124.140_amd64.debLinux
Linux kernel (USN-5562-1) linux-image-5.4.0-124-generic_5.4.0-124.140~18.04.1_i386.debLinux
Linux kernel (USN-5562-1) linux-image-5.4.0-124-generic_5.4.0-124.140~18.04.1_amd64.debLinux
Linux kernel (USN-5562-1) linux-image-generic-hwe-18.04_5.4.0.126.142~18.04.106_i386.debLinux
Linux kernel (USN-5562-1) linux-image-generic-hwe-18.04_5.4.0.126.142~18.04.106_amd64.debLinux
Linux kernel (USN-5562-1) linux-image-virtual-hwe-18.04_5.4.0.132.148~18.04.109_i386.debLinux
Linux kernel (USN-5562-1) linux-image-virtual-hwe-18.04_5.4.0.132.148~18.04.109_amd64.debLinux
Linux kernel (USN-5562-1) linux-image-5.4.0-124-lowlatency_5.4.0-124.140_amd64.debLinux
Linux kernel (USN-5562-1) linux-image-5.4.0-124-lowlatency_5.4.0-124.140~18.04.1_i386.debLinux
Linux kernel (USN-5562-1) linux-image-5.4.0-124-lowlatency_5.4.0-124.140~18.04.1_amd64.debLinux
Linux kernel (USN-5562-1) linux-image-lowlatency-hwe-18.04_5.4.0.132.148~18.04.109_i386.debLinux
Linux kernel (USN-5562-1) linux-image-lowlatency-hwe-18.04_5.4.0.132.148~18.04.109_amd64.debLinux
Linux kernel for Microsoft Azure CVM cloud systems (USN-5582-1) linux-image-azure-fde_5.4.0.1089.94+cvm1.29_amd64.debLinux
Linux kernel for Microsoft Azure CVM cloud systems (USN-5582-1) linux-image-5.4.0-1089-azure-fde_5.4.0-1089.94+cvm1.2_amd64.debLinux
(RHSA-2022:7683) kernel security, bug fix, and enhancement update bpftool-4.18.0-425.3.1.el8.x86_64.rpmLinux
(RHSA-2022:7683) kernel security, bug fix, and enhancement update kernel-4.18.0-425.3.1.el8.x86_64.rpmLinux
(RHSA-2022:7683) kernel security, bug fix, and enhancement update kernel-abi-stablelists-4.18.0-425.3.1.el8.noarch.rpmLinux
(RHSA-2022:7683) kernel security, bug fix, and enhancement update kernel-core-4.18.0-425.3.1.el8.x86_64.rpmLinux
(RHSA-2022:7683) kernel security, bug fix, and enhancement update kernel-cross-headers-4.18.0-425.3.1.el8.x86_64.rpmLinux
(RHSA-2022:7683) kernel security, bug fix, and enhancement update kernel-debug-4.18.0-425.3.1.el8.x86_64.rpmLinux
(RHSA-2022:7683) kernel security, bug fix, and enhancement update kernel-debug-core-4.18.0-425.3.1.el8.x86_64.rpmLinux
(RHSA-2022:7683) kernel security, bug fix, and enhancement update kernel-debug-devel-4.18.0-425.3.1.el8.x86_64.rpmLinux
(RHSA-2022:7683) kernel security, bug fix, and enhancement update kernel-debug-modules-4.18.0-425.3.1.el8.x86_64.rpmLinux
(RHSA-2022:7683) kernel security, bug fix, and enhancement update kernel-debug-modules-extra-4.18.0-425.3.1.el8.x86_64.rpmLinux
(RHSA-2022:7683) kernel security, bug fix, and enhancement update kernel-devel-4.18.0-425.3.1.el8.x86_64.rpmLinux
(RHSA-2022:7683) kernel security, bug fix, and enhancement update kernel-doc-4.18.0-425.3.1.el8.noarch.rpmLinux
(RHSA-2022:7683) kernel security, bug fix, and enhancement update kernel-headers-4.18.0-425.3.1.el8.x86_64.rpmLinux
(RHSA-2022:7683) kernel security, bug fix, and enhancement update kernel-modules-4.18.0-425.3.1.el8.x86_64.rpmLinux
(RHSA-2022:7683) kernel security, bug fix, and enhancement update kernel-modules-extra-4.18.0-425.3.1.el8.x86_64.rpmLinux
(RHSA-2022:7683) kernel security, bug fix, and enhancement update kernel-tools-4.18.0-425.3.1.el8.x86_64.rpmLinux
(RHSA-2022:7683) kernel security, bug fix, and enhancement update kernel-tools-libs-4.18.0-425.3.1.el8.x86_64.rpmLinux
(RHSA-2022:7683) kernel security, bug fix, and enhancement update perf-4.18.0-425.3.1.el8.x86_64.rpmLinux
(RHSA-2022:7683) kernel security, bug fix, and enhancement update python3-perf-4.18.0-425.3.1.el8.x86_64.rpmLinux
Linux kernel for OEM systems (USN-5856-1) linux-image-oem-22.04c_6.1.0.1006.6_amd64.debLinux
Linux kernel for OEM systems (USN-5856-1) linux-image-6.1.0-1006-oem_6.1.0-1006.6_amd64.debLinux

Patch Details

No records found

References

https://nvd.nist.gov/vuln/detail/CVE-2023-1234
https://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2023-1234