CVE-2022-33743: Debian Linux

High severity, CVSS 7.8. EPSS: 0.4% chance of exploitation in the next 30 days.

network backend may cause Linux netfront to use freed SKBs While adding logic to support XDP (eXpress Data Path), a code label was moved in a way allowing for SKBs having references (pointers) retained for further processing to nevertheless be freed.

Affected products

  • Debian Debian Linux: version 11.0 only
  • Linux Linux Kernel: from 5.9, up to and including 5.18
  • Xen Xen: affected versions not specified

Published 2022-07-05. Last modified 2026-06-17.