mcba_usb_start_xmit in drivers/net/can/usb/mcba_usb.c in the Linux kernel through 5.17.1 has a double free.
                
            References
                    Configurations
                    Configuration 1 (hide)
            
            
  | 
    
Configuration 2 (hide)
            
            
  | 
    
Configuration 3 (hide)
            
            
  | 
    
Configuration 4 (hide)
| AND | 
            
            
 
  | 
    
Configuration 5 (hide)
| AND | 
            
            
 
  | 
    
Configuration 6 (hide)
| AND | 
            
            
 
  | 
    
Configuration 7 (hide)
| AND | 
            
            
 
  | 
    
Configuration 8 (hide)
| AND | 
            
            
 
  | 
    
Configuration 9 (hide)
| AND | 
            
            
 
  | 
    
Configuration 10 (hide)
| AND | 
            
            
 
  | 
    
Configuration 11 (hide)
| AND | 
            
            
 
  | 
    
History
                    21 Nov 2024, 06:57
| Type | Values Removed | Values Added | 
|---|---|---|
| References | () https://github.com/torvalds/linux/commit/04c9b00ba83594a29813d6b1fb8fdc93a3915174 - Patch, Third Party Advisory | |
| References | () https://lists.fedoraproject.org/archives/list/package-announce%40lists.fedoraproject.org/message/6IHHC455LMSJNG4CSZ5CEAHYWY2DE5YW/ - | |
| References | () https://lists.fedoraproject.org/archives/list/package-announce%40lists.fedoraproject.org/message/LAWC35TO642FOP3UCA3C6IF7NAUFOVZ6/ - | |
| References | () https://lists.fedoraproject.org/archives/list/package-announce%40lists.fedoraproject.org/message/XFMPUI3WI4U2F7ONHRW36WDY4ZE7LGGT/ - | |
| References | () https://security.netapp.com/advisory/ntap-20220513-0001/ - Third Party Advisory | |
| References | () https://www.debian.org/security/2022/dsa-5127 - Third Party Advisory | |
| References | () https://www.debian.org/security/2022/dsa-5173 - Third Party Advisory | 
29 Nov 2022, 22:11
| Type | Values Removed | Values Added | 
|---|---|---|
| References | (DEBIAN) https://www.debian.org/security/2022/dsa-5173 - Third Party Advisory | |
| CPE | cpe:2.3:o:debian:debian_linux:10.0:*:*:*:*:*:*:* | 
04 Jul 2022, 11:15
| Type | Values Removed | Values Added | 
|---|---|---|
| References | 
        
        
  | 
16 Jun 2022, 19:47
| Type | Values Removed | Values Added | 
|---|---|---|
| References | (FEDORA) https://lists.fedoraproject.org/archives/list/package-announce@lists.fedoraproject.org/message/XFMPUI3WI4U2F7ONHRW36WDY4ZE7LGGT/ - Mailing List, Third Party Advisory | |
| References | (FEDORA) https://lists.fedoraproject.org/archives/list/package-announce@lists.fedoraproject.org/message/6IHHC455LMSJNG4CSZ5CEAHYWY2DE5YW/ - Mailing List, Third Party Advisory | |
| References | (CONFIRM) https://security.netapp.com/advisory/ntap-20220513-0001/ - Third Party Advisory | |
| References | (FEDORA) https://lists.fedoraproject.org/archives/list/package-announce@lists.fedoraproject.org/message/LAWC35TO642FOP3UCA3C6IF7NAUFOVZ6/ - Mailing List, Third Party Advisory | |
| References | (DEBIAN) https://www.debian.org/security/2022/dsa-5127 - Third Party Advisory | |
| CPE | cpe:2.3:o:fedoraproject:fedora:34:*:*:*:*:*:*:* cpe:2.3:o:debian:debian_linux:11.0:*:*:*:*:*:*:* cpe:2.3:o:fedoraproject:fedora:36:*:*:*:*:*:*:* cpe:2.3:o:fedoraproject:fedora:35:*:*:*:*:*:*:*  | 
13 May 2022, 22:15
| Type | Values Removed | Values Added | 
|---|---|---|
| References | 
        
        
  | 
03 May 2022, 11:15
| Type | Values Removed | Values Added | 
|---|---|---|
| References | 
        
        
  | 
13 Apr 2022, 18:15
| Type | Values Removed | Values Added | 
|---|---|---|
| References | 
        
        
  | 
11 Apr 2022, 06:15
| Type | Values Removed | Values Added | 
|---|---|---|
| References | 
        
        
  | 
09 Apr 2022, 15:32
| Type | Values Removed | Values Added | 
|---|---|---|
| CVSS | 
        v2 :  v3 :  | 
    
        v2 : 4.6
         v3 : 7.8  | 
| CWE | CWE-415 | |
| CPE | cpe:2.3:o:linux:linux_kernel:*:*:*:*:*:*:*:* | |
| References | (MISC) https://github.com/torvalds/linux/commit/04c9b00ba83594a29813d6b1fb8fdc93a3915174 - Patch, Third Party Advisory | 
03 Apr 2022, 21:15
| Type | Values Removed | Values Added | 
|---|---|---|
| New CVE | 
Information
                Published : 2022-04-03 21:15
Updated : 2024-11-21 06:57
NVD link : CVE-2022-28389
Mitre link : CVE-2022-28389
CVE.ORG link : CVE-2022-28389
JSON object : View
Products Affected
                netapp
- h700e
 - h700s_firmware
 - h410s
 - h300s_firmware
 - h500e_firmware
 - h500s_firmware
 - h410c_firmware
 - h300s
 - h700s
 - h410s_firmware
 - h700e_firmware
 - h410c
 - h500s
 - h500e
 - h300e
 - h300e_firmware
 
fedoraproject
- fedora
 
linux
- linux_kernel
 
debian
- debian_linux
 
CWE
                
                    
                        
                        CWE-415
                        
            Double Free
