Related Vulnerabilities: CVE-2022-28893  

The SUNRPC subsystem in the Linux kernel through 5.17.2 can call xs_xprt_free before ensuring that sockets are in the intended state.

Description

The MITRE CVE dictionary describes this issue as:

The SUNRPC subsystem in the Linux kernel through 5.17.2 can call xs_xprt_free before ensuring that sockets are in the intended state.

Additional Information

  • Bugzilla 2074208: CVE-2022-28893 kernel: Use after free in SUNRPC subsystem
  • CWE-416: Use After Free
  • FAQ: Frequently asked questions about CVE-2022-28893