CVE-2022-3169

NameCVE-2022-3169
DescriptionA flaw was found in the Linux kernel. A denial of service flaw may occur if there is a consecutive request of the NVME_IOCTL_RESET and the NVME_IOCTL_SUBSYS_RESET through the device file of the driver, resulting in a PCIe link disconnect.
SourceCVE (at NVD; CERT, LWN, oss-sec, fulldisc, bugtraq, EDB, Metasploit, Red Hat, Ubuntu, Gentoo, SUSE bugzilla/CVE, Mageia, GitHub advisories/code/issues, web search, more)
ReferencesDLA-3244-1

Vulnerable and fixed packages

The table below lists information on source packages.

Source PackageReleaseVersionStatus
linux (PTS)buster4.19.249-2vulnerable
buster (security)4.19.269-1vulnerable
bullseye5.10.158-2fixed
bullseye (security)5.10.162-1fixed
bookworm, sid6.1.8-1fixed
linux-5.10 (PTS)buster (security)5.10.158-2~deb10u1fixed

The information below is based on the following data on fixed versions.

PackageTypeReleaseFixed VersionUrgencyOriginDebian Bugs
linuxsourcebullseye5.10.158-1
linuxsource(unstable)6.0.10-1
linux-5.10sourcebuster5.10.158-2~deb10u1DLA-3244-1

Notes

https://bugzilla.redhat.com/show_bug.cgi?id=2125341
https://bugzilla.kernel.org/show_bug.cgi?id=214771

Search for package or bug name: Reporting problems