CVE-2023-22995

Updated: 2023-11-04 20:28:18.309824

Description:

In the Linux kernel before 5.17, an error path in dwc3_qcom_acpi_register_core in drivers/usb/dwc3/dwc3-qcom.c lacks certain platform_device_put and kfree calls.


Links NIST CIRCL RHEL Ubuntu

Severity

Severity Score
CVSS Version 2.x 0
CVSS Version 3.x HIGH 7.8

Status

OS name Project name Version Score Severity Status Errata Last updated
AlmaLinux 9.2 ESU kernel 5.14.0 7.8 HIGH Already Fixed 2024-01-19 04:11:27
AlmaLinux 9.2 FIPS kernel 5.14.0 7.8 HIGH Already Fixed 2024-01-19 04:10:25
CentOS 6 ELS kernel 2.6.32 7.8 HIGH Not Vulnerable 2023-04-12 08:48:35
CentOS 7 ELS kernel 3.10.0 7.8 HIGH Not Vulnerable 2023-11-02 14:11:47
CentOS 8.4 ELS kernel 4.18.0 7.8 HIGH Not Vulnerable 2023-04-28 03:33:59
CentOS 8.5 ELS kernel 4.18.0 7.8 HIGH Not Vulnerable 2023-04-13 11:05:22
CloudLinux 6 ELS kernel 2.6.32 7.8 HIGH Not Vulnerable 2023-04-12 08:48:35
Oracle Linux 6 ELS kernel 2.6.32 7.8 HIGH Not Vulnerable 2023-04-12 08:48:35
Ubuntu 16.04 ELS linux-hwe 4.15.0 7.8 HIGH Not Vulnerable 2023-04-04 11:05:02
Ubuntu 16.04 ELS linux 4.4.0 7.8 HIGH Not Vulnerable 2023-04-04 11:05:02
Total: 11