CVE-2022-3545
Summary
| CVE | CVE-2022-3545 |
|---|---|
| State | PUBLIC |
| Assigner | [email protected] |
| Source Priority | CVE Program / NVD first with legacy fallback |
| Published | 2022-10-17 12:15:00 UTC |
| Updated | 2023-11-07 03:51:00 UTC |
| Description | A vulnerability has been found in Linux Kernel and classified as critical. Affected by this vulnerability is the function area_cache_get of the file drivers/net/ethernet/netronome/nfp/nfpcore/nfp_cppcore.c of the component IPsec. The manipulation leads to use after free. It is recommended to apply a patch to fix this issue. The identifier VDB-211045 was assigned to this vulnerability. |
Risk And Classification
Problem Types: CWE-119
NVD Known Affected Configurations (CPE 2.3)
| Type | Vendor | Product | Version | Update | Edition | Language |
|---|---|---|---|---|---|---|
| Operating System | Debian | Debian Linux | 10.0 | All | All | All |
| Operating System | Debian | Debian Linux | 11.0 | All | All | All |
| Operating System | Linux | Linux Kernel | All | All | All | All |
| Hardware | Netapp | H300s | - | All | All | All |
| Operating System | Netapp | H300s Firmware | - | All | All | All |
| Hardware | Netapp | H410c | - | All | All | All |
| Operating System | Netapp | H410c Firmware | - | All | All | All |
| Hardware | Netapp | H410s | - | All | All | All |
| Operating System | Netapp | H410s Firmware | - | All | All | All |
| Hardware | Netapp | H500s | - | All | All | All |
| Operating System | Netapp | H500s Firmware | - | All | All | All |
| Hardware | Netapp | H700s | - | All | All | All |
| Operating System | Netapp | H700s Firmware | - | All | All | All |
References
| Reference | Source | Link | Tags |
|---|---|---|---|
| [SECURITY] [DLA 3349-1] linux-5.10 security update | MLIST | lists.debian.org | |
| Debian -- Security Information -- DSA-5324-1 linux | DEBIAN | www.debian.org | |
| kernel/git/klassert/ipsec-next.git - Steffen Klassert's ipsec-next networking tree | N/A | git.kernel.org | |
| CVE-2022-3545 Linux Kernel Vulnerability in NetApp Products | NetApp Product Security | CONFIRM | security.netapp.com | |
| [SECURITY] [DLA 3403-1] linux security update | MLIST | lists.debian.org | |
| CVE-2022-3545 | Linux Kernel IPsec nfp_cppcore.c area_cache_get use after free | N/A | vuldb.com | |
| CVE Program record | CVE.ORG | www.cve.org | canonical |
| NVD vulnerability detail | NVD | nvd.nist.gov | canonical, analysis |
No vendor comments have been submitted for this CVE.
Legacy QID Mappings
- 160459 Oracle Enterprise Linux Security Update for unbreakable enterprise kernel (ELSA-2023-12116)
- 160460 Oracle Enterprise Linux Security Update for unbreakable enterprise kernel-container (ELSA-2023-12120)
- 160506 Oracle Enterprise Linux Security Update for unbreakable enterprise kernel (ELSA-2023-12199)
- 160508 Oracle Enterprise Linux Security Update for unbreakable enterprise kernel-container (ELSA-2023-12200)
- 161318 Oracle Enterprise Linux Security Update for kernel (ELSA-2024-12094)
- 161372 Oracle Enterprise Linux Security Update for kernel (ELSA-2024-12169)
- 161402 Oracle Enterprise Linux Security Update for kernel (ELSA-2024-0897)
- 161404 Oracle Enterprise Linux Security Update for kernel (ELSA-2024-0461)
- 181491 Debian Security Update for linux (DSA 5324-1)
- 181618 Debian Security Update for linux-5.10 (DLA 3349-1)
- 181768 Debian Security Update for linux (DLA 3403-1)
- 183517 Debian Security Update for linux (CVE-2022-3545)
- 199154 Ubuntu Security Notification for Linux kernel (OEM) Vulnerabilities (USN-5858-1)
- 199156 Ubuntu Security Notification for Linux kernel (OEM) Vulnerabilities (USN-5859-1)
- 199209 Ubuntu Security Notification for Linux kernel Vulnerabilities (USN-5912-1)
- 199211 Ubuntu Security Notification for Linux kernel Vulnerabilities (USN-5911-1)
- 199212 Ubuntu Security Notification for Linux kernel Vulnerabilities (USN-5917-1)
- 199214 Ubuntu Security Notification for Linux kernel Vulnerabilities (USN-5920-1)
- 199217 Ubuntu Security Notification for Linux kernel Vulnerabilities (USN-5925-1)
- 199218 Ubuntu Security Notification for Linux kernel (Azure) Vulnerabilities (USN-5927-1)
- 199220 Ubuntu Security Notification for Linux kernel (Raspberry Pi) Vulnerabilities (USN-5929-1)
- 199223 Ubuntu Security Notification for Linux kernel Vulnerabilities (USN-5935-1)
- 199224 Ubuntu Security Notification for Linux kernel (Raspberry Pi) Vulnerabilities (USN-5934-1)
- 199226 Ubuntu Security Notification for Linux kernel (GCP) Vulnerabilities (USN-5939-1)
- 199227 Ubuntu Security Notification for Linux kernel (GKE) Vulnerabilities (USN-5938-1)
- 199229 Ubuntu Security Notification for Linux kernel (KVM) Vulnerabilities (USN-5941-1)
- 199230 Ubuntu Security Notification for Linux kernel (Raspberry Pi) Vulnerabilities (USN-5940-1)
- 199238 Ubuntu Security Notification for Linux kernel (KVM) Vulnerabilities (USN-5950-1)
- 199239 Ubuntu Security Notification for Linux kernel (IBM) Vulnerabilities (USN-5951-1)
- 199243 Ubuntu Security Notification for Linux kernel (Intel IoTG) Vulnerabilities (USN-5962-1)
- 199276 Ubuntu Security Notification for Linux kernel (BlueField) Vulnerabilities (USN-6000-1)
- 199502 Ubuntu Security Notification for Linux kernel Vulnerabilities (USN-5975-1)
- 199541 Ubuntu Security Notification for Linux kernel (Azure) Vulnerabilities (USN-5924-1)
- 199566 Ubuntu Security Notification for Linux kernel (GCP) Vulnerabilities (USN-6007-1)
- 199567 Ubuntu Security Notification for Linux kernel (HWE) Vulnerabilities (USN-5883-1)
- 199581 Ubuntu Security Notification for Linux kernel Vulnerabilities (USN-5919-1)
- 242839 Red Hat Update for kernel (RHSA-2024:0461)
- 242845 Red Hat Update for kernel (RHSA-2024:0448)
- 242846 Red Hat Update for kernel-rt (RHSA-2024:0439)
- 242890 Red Hat Update for kernel (RHSA-2024:0724)
- 242939 Red Hat Update for kernel (RHSA-2024:0897)
- 242983 Red Hat Update for kernel-rt (RHSA-2024:0881)
- 243050 Red Hat Update for kernel (RHSA-2024:1250)
- 243055 Red Hat Update for kernel (RHSA-2024:1268)
- 243058 Red Hat Update for kernel-rt (RHSA-2024:1269)
- 243062 Red Hat Update for kernel-rt (RHSA-2024:1306)
- 243076 Red Hat Update for kernel (RHSA-2024:1367)
- 243087 Red Hat Update for kernel (RHSA-2024:1404)
- 243096 Red Hat Update for kernel-rt (RHSA-2024:1382)
- 377891 Alibaba Cloud Linux Security Update for cloud-kernel (ALINUX3-SA-2023:0002)
- 378043 Alibaba Cloud Linux Security Update for cloud-kernel (ALINUX2-SA-2023:0011)
- 378468 Alibaba Cloud Linux Security Update for cloud-kernel (ALINUX3-SA-20230042)
- 378512 Alibaba Cloud Linux Security Update for cloud-kernel (ALINUX3-SA-2023:0042)
- 672410 EulerOS Security Update for kernel (EulerOS-SA-2022-2796)
- 672495 EulerOS Security Update for kernel (EulerOS-SA-2023-1012)
- 672516 EulerOS Security Update for kernel (EulerOS-SA-2023-1037)
- 672532 EulerOS Security Update for kernel (EulerOS-SA-2023-1126)
- 672564 EulerOS Security Update for kernel (EulerOS-SA-2023-1102)
- 672668 EulerOS Security Update for kernel (EulerOS-SA-2023-1360)
- 672711 EulerOS Security Update for kernel (EulerOS-SA-2023-1507)
- 752813 SUSE Enterprise Linux Security Update for the Linux Kernel (SUSE-SU-2022:3930-1)
- 752839 SUSE Enterprise Linux Security Update for the Linux Kernel (SUSE-SU-2022:3929-1)
- 752880 SUSE Enterprise Linux Security Update for the Linux Kernel (SUSE-SU-2022:4053-1)
- 752889 SUSE Enterprise Linux Security Update for the Linux Kernel (SUSE-SU-2022:3897-1)
- 752911 SUSE Enterprise Linux Security Update for the Linux Kernel (SUSE-SU-2022:3998-1)
- 752913 SUSE Enterprise Linux Security Update for the Linux Kernel (SUSE-SU-2022:4072-1)
- 752944 SUSE Enterprise Linux Security Update for the Linux Kernel (SUSE-SU-2022:4273-1)
- 752959 SUSE Enterprise Linux Security Update for the Linux Kernel (SUSE-SU-2022:4272-1)
- 753015 SUSE Enterprise Linux Security Update for the Linux Kernel (Live Patch 23 for SLE 15 SP3) (SUSE-SU-2022:4544-1)
- 753016 SUSE Enterprise Linux Security Update for the Linux Kernel (Live Patch 24 for SLE 15 SP2) (SUSE-SU-2022:4587-1)
- 753017 SUSE Enterprise Linux Security Update for the Linux Kernel (Live Patch 4 for SLE 15 SP4) (SUSE-SU-2022:4560-1)
- 753018 SUSE Enterprise Linux Security Update for the Linux Kernel (Live Patch 31 for SLE 15) (SUSE-SU-2022:4577-1)
- 753021 SUSE Enterprise Linux Security Update for the Linux Kernel (Live Patch 14 for SLE 15 SP3) (SUSE-SU-2022:4528-1)
- 753022 SUSE Enterprise Linux Security Update for the Linux Kernel (Live Patch 20 for SLE 15 SP3) (SUSE-SU-2022:4551-1)
- 753025 SUSE Enterprise Linux Security Update for the Linux Kernel (Live Patch 32 for SLE 15 SP1) (SUSE-SU-2022:4506-1)
- 753026 SUSE Enterprise Linux Security Update for the Linux Kernel (Live Patch 33 for SLE 15 SP1) (SUSE-SU-2022:4533-1)
- 753029 SUSE Enterprise Linux Security Update for the Linux Kernel (Live Patch 25 for SLE 15 SP3) (SUSE-SU-2022:4517-1)
- 753031 SUSE Enterprise Linux Security Update for the Linux Kernel (Live Patch 31 for SLE 15 SP2) (SUSE-SU-2022:4515-1)
- 753032 SUSE Enterprise Linux Security Update for the Linux Kernel (Live Patch 27 for SLE 15 SP2) (SUSE-SU-2022:4513-1)
- 753033 SUSE Enterprise Linux Security Update for the Linux Kernel (Live Patch 1 for SLE 15 SP4) (SUSE-SU-2022:4518-1)
- 753035 SUSE Enterprise Linux Security Update for the Linux Kernel (Live Patch 30 for SLE 15 SP2) (SUSE-SU-2022:4534-1)
- 753036 SUSE Enterprise Linux Security Update for the Linux Kernel (Live Patch 26 for SLE 15) (SUSE-SU-2022:4550-1)
- 753037 SUSE Enterprise Linux Security Update for the Linux Kernel (Live Patch 26 for SLE 15 SP2) (SUSE-SU-2022:4580-1)
- 753038 SUSE Enterprise Linux Security Update for the Linux Kernel (SUSE-SU-2022:4573-1)
- 753039 SUSE Enterprise Linux Security Update for the Linux Kernel (SUSE-SU-2022:4574-1)
- 753040 SUSE Enterprise Linux Security Update for the Linux Kernel (Live Patch 12 for SLE 15 SP3) (SUSE-SU-2022:4562-1)
- 753041 SUSE Enterprise Linux Security Update for the Linux Kernel (Live Patch 24 for SLE 15 SP3) (SUSE-SU-2022:4516-1)
- 753042 SUSE Enterprise Linux Security Update for the Linux Kernel (Live Patch 35 for SLE 15 SP1) (SUSE-SU-2022:4539-1)
- 753044 SUSE Enterprise Linux Security Update for the Linux Kernel (Live Patch 3 for SLE 15 SP4) (SUSE-SU-2022:4559-1)
- 753046 SUSE Enterprise Linux Security Update for the Linux Kernel (Live Patch 30 for SLE 15 SP1) (SUSE-SU-2022:4527-1)
- 753048 SUSE Enterprise Linux Security Update for the Linux Kernel (Live Patch 18 for SLE 15 SP3) (SUSE-SU-2022:4569-1)
- 753049 SUSE Enterprise Linux Security Update for the Linux Kernel (Live Patch 26 for SLE 12 SP5) (SUSE-SU-2022:4520-1)
- 753050 SUSE Enterprise Linux Security Update for the Linux Kernel (Live Patch 22 for SLE 15 SP3) (SUSE-SU-2022:4543-1)
- 753051 SUSE Enterprise Linux Security Update for the Linux Kernel (SUSE-SU-2022:4589-1)
- 753060 SUSE Enterprise Linux Security Update for the Linux Kernel (SUSE-SU-2022:4615-1)
- 753063 SUSE Enterprise Linux Security Update for the Linux Kernel (SUSE-SU-2022:4617-1)
- 904228 Common Base Linux Mariner (CBL-Mariner) Security Update for kernel (11162)
- 904259 Common Base Linux Mariner (CBL-Mariner) Security Update for kernel (11136)
- 904989 Common Base Linux Mariner (CBL-Mariner) Security Update for livepatch-5.15.72.1-1.cm2 (12534)
- 905061 Common Base Linux Mariner (CBL-Mariner) Security Update for livepatch-5.15.80.1-1.cm2 (12548)
- 905063 Common Base Linux Mariner (CBL-Mariner) Security Update for livepatch-5.15.77.1-1.cm2 (12542)
- 905085 Common Base Linux Mariner (CBL-Mariner) Security Update for livepatch-5.15.48.1-4.cm2 (12524)
- 905115 Common Base Linux Mariner (CBL-Mariner) Security Update for livepatch-5.15.82.1-1.cm2 (12557)
- 905121 Common Base Linux Mariner (CBL-Mariner) Security Update for livepatch-5.15.79.1-1.cm2 (12543)
- 905141 Common Base Linux Mariner (CBL-Mariner) Security Update for livepatch-5.15.81.1-1.cm2 (12554)
- 905161 Common Base Linux Mariner (CBL-Mariner) Security Update for livepatch-5.15.74.1-1.cm2 (12535)
- 905213 Common Base Linux Mariner (CBL-Mariner) Security Update for kernel (11162-1)
- 906181 Common Base Linux Mariner (CBL-Mariner) Security Update for kernel (11162-2)
- 906329 Common Base Linux Mariner (CBL-Mariner) Security Update for kernel (11136-2)
- 941584 AlmaLinux Security Update for kernel (ALSA-2024:0897)