[SRU][F][PATCH 0/2] CVE-2022-48791

Juerg Haefliger juerg.haefliger at canonical.com
Mon Aug 19 14:21:33 UTC 2024


https://ubuntu.com/security/CVE-2022-48791

https://warthogs.atlassian.net/browse/KERNSEC-13740

[ Impact ]

Potential use-after-free for aborted or racy completed SAS TMF
(task managament function) task.


[ Test Case ]

Compile tested only.


[ Where Problems Could Occur ]

Modifications are limited to the PM8001 SAS driver, so only users with that HW
might encounter issues.


Igor Pylypiv (1):
  scsi: pm80xx: Fix TMF task completion race condition

John Garry (1):
  scsi: pm8001: Fix use-after-free for aborted TMF sas_task

 drivers/scsi/pm8001/pm8001_sas.c | 39 ++++++++++++++++++--------------
 1 file changed, 22 insertions(+), 17 deletions(-)

-- 
2.43.0




More information about the kernel-team mailing list