CVE-2022-33743: Debian Linux
High severity, CVSS 7.8. EPSS: 0.4% chance of exploitation in the next 30 days.
network backend may cause Linux netfront to use freed SKBs While adding logic to support XDP (eXpress Data Path), a code label was moved in a way allowing for SKBs having references (pointers) retained for further processing to nevertheless be freed.
Affected products
- Debian Debian Linux: version 11.0 only
- Linux Linux Kernel: from 5.9, up to and including 5.18
- Xen Xen: affected versions not specified
Published 2022-07-05. Last modified 2026-06-17.