[SRU][OEM-5.17][PATCH 0/1] CVE-2022-4095

Yuxuan Luo yuxuan.luo at canonical.com
Thu Apr 6 17:31:07 UTC 2023


[Impact]
Zheng Wang and Zhuorao Yang discovered that the RealTek RTL8712U wireless
driver in the Linux kernel contained a use-after-free vulnerability. A
local attacker could use this to cause a denial of service (system crash)
or possibly execute arbitrary code.

[Backport]
Clean cherry pick.

[Test]
Compile and boot tested.

[Potential Regression]
Low and limited to rtl8712_cmd.c, a staging driver.


Dan Carpenter (1):
  staging: rtl8712: fix use after free bugs

 drivers/staging/rtl8712/rtl8712_cmd.c | 36 ---------------------------
 1 file changed, 36 deletions(-)

-- 
2.34.1




More information about the kernel-team mailing list