CVE-2022-42721
Summary
| CVE | CVE-2022-42721 |
| State | PUBLIC |
| Assigner | [email protected] |
| Source Priority | CVE Program / NVD first with legacy fallback |
| Published | 2022-10-14 00:15:00 UTC |
| Updated | 2023-11-07 03:53:00 UTC |
| Description | A list management bug in BSS handling in the mac80211 stack in the Linux kernel 5.1 through 5.19.x before 5.19.16 could be used by local attackers (able to inject WLAN frames) to corrupt a linked list and, in turn, potentially execute code. |
NVD Known Affected Configurations (CPE 2.3)
References
| Reference | Source | Link | Tags |
|---|
| [SECURITY] Fedora 36 Update: kernel-5.19.15-201.fc36 - package-announce - Fedora Mailing-Lists |
FEDORA |
lists.fedoraproject.org |
|
| October 2022 Linux Kernel 5.19.15 Vulnerabilities in NetApp Products | NetApp Product Security |
CONFIRM |
security.netapp.com |
|
| oss-security - Re: Various Linux Kernel WLAN security issues (RCE/DOS) found |
MISC |
www.openwall.com |
|
| [SECURITY] Fedora 35 Update: kernel-5.19.15-101.fc35 - package-announce - Fedora Mailing-Lists |
|
lists.fedoraproject.org |
|
| Bug 1204060 – VUL-0: CVE-2022-42721: kernel: remote crash/code execution due list corruption in the wlan stack |
MISC |
bugzilla.suse.com |
|
| [SECURITY] Fedora 37 Update: kernel-5.19.15-301.fc37 - package-announce - Fedora Mailing-Lists |
FEDORA |
lists.fedoraproject.org |
|
| kernel/git/wireless/wireless.git - kvalo's fork of linux.git |
MISC |
git.kernel.org |
|
| [SECURITY] Fedora 37 Update: kernel-5.19.15-301.fc37 - package-announce - Fedora Mailing-Lists |
|
lists.fedoraproject.org |
|
| Debian -- Security Information -- DSA-5257-1 linux |
DEBIAN |
www.debian.org |
|
| [SECURITY] [DLA 3173-1] linux-5.10 security update |
MLIST |
lists.debian.org |
|
| [SECURITY] Fedora 36 Update: kernel-5.19.15-201.fc36 - package-announce - Fedora Mailing-Lists |
|
lists.fedoraproject.org |
|
| Kernel Live Patch Security Notice LSN-0090-1 ≈ Packet Storm |
MISC |
packetstormsecurity.com |
|
| [SECURITY] Fedora 35 Update: kernel-5.19.15-101.fc35 - package-announce - Fedora Mailing-Lists |
FEDORA |
lists.fedoraproject.org |
|
| CVE Program record |
CVE.ORG |
www.cve.org |
canonical |
| NVD vulnerability detail |
NVD |
nvd.nist.gov |
canonical, analysis |
No vendor comments have been submitted for this CVE.
Legacy QID Mappings
- 160583 Oracle Enterprise Linux Security Update for kernel (ELSA-2023-2458)
- 160692 Oracle Enterprise Linux Security Update for kernel (ELSA-2023-2951)
- 181145 Debian Security Update for linux (DSA 5257-1)
- 181190 Debian Security Update for linux-5.10 (DLA 3173-1)
- 183646 Debian Security Update for linux (CVE-2022-42721)
- 198996 Ubuntu Security Notification for Linux kernel Vulnerabilities (USN-5691-1)
- 198997 Ubuntu Security Notification for Linux kernel Vulnerabilities (USN-5692-1)
- 198999 Ubuntu Security Notification for Linux kernel (OEM) Vulnerabilities (USN-5693-1)
- 199006 Ubuntu Security Notification for Linux kernel Vulnerabilities (USN-5700-1)
- 199014 Ubuntu Security Notification for backport-iwlwifi-dkms Vulnerabilities (USN-5708-1)
- 199053 Ubuntu Security Notification for Linux kernel (Azure CVM) Vulnerabilities (USN-5752-1)
- 241417 Red Hat Update for kernel security (RHSA-2023:2458)
- 241468 Red Hat Update for kernel-rt (RHSA-2023:2148)
- 241504 Red Hat Update for kernel security (RHSA-2023:2951)
- 241527 Red Hat Update for kernel-rt (RHSA-2023:2736)
- 243041 Red Hat Update for kernel security (RHSA-2024:1188)
- 283201 Fedora Security Update for kernel (FEDORA-2022-2cfbe17910)
- 283209 Fedora Security Update for kernel (FEDORA-2022-b948fc3cfb)
- 283477 Fedora Security Update for kernel (FEDORA-2022-1a5b125ac6)
- 377891 Alibaba Cloud Linux Security Update for cloud-kernel (ALINUX3-SA-2023:0002)
- 378468 Alibaba Cloud Linux Security Update for cloud-kernel (ALINUX3-SA-20230042)
- 378512 Alibaba Cloud Linux Security Update for cloud-kernel (ALINUX3-SA-2023:0042)
- 502548 Alpine Linux Security Update for linux-lts
- 504122 Alpine Linux Security Update for linux-lts
- 610462 Google Android Devices January 2023 Security Patch Missing
- 610467 Google Android February 2023 Security Patch Missing for Samsung
- 752708 SUSE Enterprise Linux Security Update for the Linux Kernel (SUSE-SU-2022:3704-1)
- 752724 SUSE Enterprise Linux Security Update for the Linux Kernel (SUSE-SU-2022:3775-1)
- 752750 SUSE Enterprise Linux Security Update for the Linux Kernel (SUSE-SU-2022:3844-1)
- 752889 SUSE Enterprise Linux Security Update for the Linux Kernel (SUSE-SU-2022:3897-1)
- 752911 SUSE Enterprise Linux Security Update for the Linux Kernel (SUSE-SU-2022:3998-1)
- 753063 SUSE Enterprise Linux Security Update for the Linux Kernel (SUSE-SU-2022:4617-1)
- 753119 SUSE Enterprise Linux Security Update for the Linux Kernel (Live Patch 15 for SLE 15 SP3) (SUSE-SU-2022:3657-1)
- 753143 SUSE Enterprise Linux Security Update for the Linux Kernel (Live Patch 24 for SLE 15 SP3) (SUSE-SU-2022:3606-1)
- 753150 SUSE Enterprise Linux Security Update for the Linux Kernel (Live Patch 2 for SLE 15 SP4) (SUSE-SU-2022:3605-1)
- 753339 SUSE Enterprise Linux Security Update for the Linux Kernel (Live Patch 3 for SLE 15 SP4) (SUSE-SU-2022:3601-1)
- 753352 SUSE Enterprise Linux Security Update for the Linux Kernel (Live Patch 29 for SLE 15 SP2) (SUSE-SU-2022:3648-1)
- 753374 SUSE Enterprise Linux Security Update for the Linux Kernel (SUSE-SU-2022:3809-1)
- 753375 SUSE Enterprise Linux Security Update for the Linux Kernel (Live Patch 1 for SLE 15 SP4) (SUSE-SU-2022:3628-1)
- 753394 SUSE Enterprise Linux Security Update for the Linux Kernel (Live Patch 30 for SLE 15 SP2) (SUSE-SU-2022:3607-1)
- 904220 Common Base Linux Mariner (CBL-Mariner) Security Update for kernel (11123)
- 904224 Common Base Linux Mariner (CBL-Mariner) Security Update for kernel (11117)
- 904386 Common Base Linux Mariner (CBL-Mariner) Security Update for kernel (11123-1)
- 904415 Common Base Linux Mariner (CBL-Mariner) Security Update for kernel (11117-1)
- 905880 Common Base Linux Mariner (CBL-Mariner) Security Update for kernel (11123-2)
- 906437 Common Base Linux Mariner (CBL-Mariner) Security Update for kernel (11117-2)
- 941023 AlmaLinux Security Update for kernel (ALSA-2023:2458)
- 941061 AlmaLinux Security Update for kernel-rt (ALSA-2023:2148)
- 941096 AlmaLinux Security Update for kernel (ALSA-2023:2951)
- 941114 AlmaLinux Security Update for kernel-rt (ALSA-2023:2736)