CVE-2022-48666

scsi: core: Fix a use-after-free

References

Notes

 carnil> Introduced in 65ca846a5314 ("scsi: core: Introduce {init,exit}_cmd_priv()").
 carnil> Vulnerable versions: 5.7-rc1.

Bugs

Status

Branch Status
4.19-buster-security N/A "Vulnerable code not present"
4.19-upstream-stable N/A "Vulnerable code not present"
5.10-bullseye-security needed
5.10-upstream-stable needed
6.1-bookworm-security N/A "Fixed before branching point"
6.1-upstream-stable N/A "Fixed before branching point"
6.6-upstream-stable N/A "Fixed before branching point"
6.8-upstream-stable N/A "Fixed before branching point"
sid released (6.0.2-1)
upstream released (6.0-rc5) [8fe4ce5836e932f5766317cb651c1ff2a4cd0506]