Vulnerabilities > CVE-2022-45888 - Use After Free vulnerability in multiple products

047910
CVSS 6.4 - MEDIUM
Attack vector
PHYSICAL
Attack complexity
HIGH
Privileges required
NONE
Confidentiality impact
HIGH
Integrity impact
HIGH
Availability impact
HIGH
high complexity
linux
netapp
CWE-416

Summary

An issue was discovered in the Linux kernel through 6.0.9. drivers/char/xillybus/xillyusb.c has a race condition and use-after-free during physical removal of a USB device.

Vulnerable Configurations

Part Description Count
OS
Linux
5189
OS
Netapp
5
Hardware
Netapp
5

Common Weakness Enumeration (CWE)