Back to bug 2066706

Who When What Removed Added
Marian Rehak 2022-03-22 11:00:17 UTC CC security-response-team
Alex 2022-03-24 18:24:37 UTC Severity high medium
Priority high medium
Alex 2022-03-24 18:27:45 UTC Depends On 2068253, 2068254, 2068252, 2068255
Alex 2022-03-24 18:32:58 UTC Doc Text A flaw use after free in the Linux kernel sound subsystem was found in the way user triggers concurrent calls of PCM hw_params and the hw_free ioctls or similar race condition happens inside ALSA PCM for other ioctls. A local user could use this flaw to crash the system or potentially escalate their privileges on the system.
Alex 2022-03-24 18:34:09 UTC Summary EMBARGOED CVE-2022-1048 kernel: race condition in snd_pcm_hw_free leading to use-after-free CVE-2022-1048 kernel: race condition in snd_pcm_hw_free leading to use-after-free
Group qe_staff, security
CC adscvr, airlied, alciregi, bskeggs, hdegoede, jarodwilson, jeremy, jglisse, jonathan, josef, jwboyer, kernel-maint, kernel-mgr, kpatch-maint, linville, masami256, mchehab, steved
Alex 2022-03-24 18:34:35 UTC Depends On 2068257
Alex 2022-03-24 18:53:37 UTC Fixed In Version Linux kernel 5.17-rc9
RaTasha Tillery-Smith 2022-03-25 12:47:25 UTC Doc Text A flaw use after free in the Linux kernel sound subsystem was found in the way user triggers concurrent calls of PCM hw_params and the hw_free ioctls or similar race condition happens inside ALSA PCM for other ioctls. A local user could use this flaw to crash the system or potentially escalate their privileges on the system. A use-after-free flaw was found in the Linux kernel’s sound subsystem in the way a user triggers concurrent calls of PCM hw_params. The hw_free ioctls or similar race condition happens inside ALSA PCM for other ioctls. This flaw allows a local user to crash or potentially escalate their privileges on the system.
TEJ RATHI 2022-03-28 04:26:41 UTC Depends On 2069005
Marian Rehak 2022-03-28 14:54:44 UTC Blocks 2069250
Sandro Bonazzola 2022-03-30 12:13:39 UTC Depends On 2070095
Red Hat Bugzilla 2022-06-04 08:04:38 UTC CC fpacheco
Red Hat Bugzilla 2022-07-16 03:20:30 UTC CC brdeoliv
Red Hat Bugzilla 2022-08-12 04:29:29 UTC CC ctoe
Kazu Yoshida 2022-10-13 12:02:30 UTC CC kyoshida
errata-xmlrpc 2022-11-08 09:09:51 UTC Link ID Red Hat Product Errata RHSA-2022:7444
errata-xmlrpc 2022-11-08 10:09:07 UTC Link ID Red Hat Product Errata RHSA-2022:7683
errata-xmlrpc 2022-11-15 09:44:48 UTC Link ID Red Hat Product Errata RHSA-2022:7933
errata-xmlrpc 2022-11-15 10:47:32 UTC Link ID Red Hat Product Errata RHSA-2022:8267
Sandro Bonazzola 2022-11-18 14:50:52 UTC CC sbonazzo
Product Security DevOps Team 2022-12-05 07:33:25 UTC Status NEW CLOSED
Resolution --- ERRATA
Last Closed 2022-12-05 07:33:25 UTC
Jan Pazdziora 2023-07-28 15:51:05 UTC Flags needinfo?(mrehak)
CC jpazdziora
Marian Rehak 2023-07-31 12:46:29 UTC CC allarkin
Flags needinfo?(mrehak) needinfo?(allarkin)
Alex 2023-08-06 11:39:40 UTC Flags needinfo?(allarkin)

Back to bug 2066706