[{"data":1,"prerenderedAt":-1},["ShallowReactive",2],{"repo-stars":3,"vuln-CVE-2022-42328":6},{"stargazers_count":4,"fetched_at":5},7,"2026-06-04T08:53:30.047Z",{"id":7,"descriptions":8,"cisa":9,"weaknesses":10,"exploits":39,"aliases":40,"duplicate_of":9,"upstream":41,"downstream":42,"duplicates":115,"related":116,"reserved_at":9,"published_at":129,"modified_at":130,"state":131,"summary":132,"references_raw":141,"kevs":170,"epss":171,"epss_history":174,"metrics":433,"affected":444},"CVE-2022-42328","Guests can trigger deadlock in Linux netback driver T[his CNA information record relates to multiple CVEs; the text explains which aspects/vulnerabilities correspond to which CVE.] The patch for XSA-392 introduced another issue which might result in a deadlock when trying to free the SKB of a packet dropped due to the XSA-392 handling (CVE-2022-42328). Additionally when dropping packages for other reasons the same deadlock could occur in case of netpoll being active for the interface the xen-netback driver is connected to (CVE-2022-42329).",null,[11],{"_key":12,"id":12,"name":13,"description":14,"type":15,"status":16,"abstraction":17,"likelihood_of_exploit":9,"capec":18},"CWE-667","Improper Locking","The product does not properly acquire or release a lock on a resource, leading to unexpected resource state changes and behaviors.","weakness","Draft","Class",[19,31,35],{"id":20,"name":21,"techniques":22},"CAPEC-25","Forced Deadlock",[23],{"id":24,"name":25,"tactics":26,"countermeasures":30},"T1499.004","Application or System Exploitation",[27],{"id":28,"name":29},"TA0105","Impact",[],{"id":32,"name":33,"techniques":34},"CAPEC-26","Leveraging Race Conditions",[],{"id":36,"name":37,"techniques":38},"CAPEC-27","Leveraging Race Conditions via Symbolic Links",[],[],[],[],[43,45,47,49,51,53,55,57,59,61,63,65,67,69,71,73,75,77,79,81,83,85,87,89,91,93,95,97,99,101,103,105,107,109,111,113],{"_key":44},"SUSE-SU-2022:4504-1",{"_key":46},"SUSE-SU-2022:4505-1",{"_key":48},"SUSE-SU-2022:4566-1",{"_key":50},"SUSE-SU-2022:4573-1",{"_key":52},"SUSE-SU-2022:4615-1",{"_key":54},"SUSE-SU-2023:0406-1",{"_key":56},"SUSE-SU-2022:4574-1",{"_key":58},"SUSE-SU-2022:4585-1",{"_key":60},"SUSE-SU-2022:4617-1",{"_key":62},"SUSE-SU-2023:0134-1",{"_key":64},"SUSE-SU-2023:0152-1",{"_key":66},"DLA-3244-1",{"_key":68},"DLA-3245-1",{"_key":70},"MGASA-2022-0477",{"_key":72},"DEBIAN-CVE-2022-42328",{"_key":74},"UBUNTU-CVE-2022-42328",{"_key":76},"USN-5883-1",{"_key":78},"USN-5912-1",{"_key":80},"USN-5917-1",{"_key":82},"USN-5919-1",{"_key":84},"USN-5920-1",{"_key":86},"USN-5924-1",{"_key":88},"USN-5925-1",{"_key":90},"USN-5927-1",{"_key":92},"USN-5934-1",{"_key":94},"USN-5935-1",{"_key":96},"USN-5938-1",{"_key":98},"USN-5939-1",{"_key":100},"USN-5940-1",{"_key":102},"USN-5941-1",{"_key":104},"USN-5951-1",{"_key":106},"USN-5962-1",{"_key":108},"USN-5975-1",{"_key":110},"USN-5979-1",{"_key":112},"USN-6000-1",{"_key":114},"USN-6007-1",[],[117,118,119,120,121,122,123,124,125,126,127,128],{"_key":44},{"_key":46},{"_key":48},{"_key":50},{"_key":52},{"_key":54},{"_key":56},{"_key":58},{"_key":60},{"_key":62},{"_key":64},{"_key":70},"2022-12-07T00:00:00.000Z","2025-04-23T14:26:39.413Z","Modified",{"cisa_kev":133,"cisa_ransomware":133,"cisa_vendor":9,"epss_severity":134,"epss_score":135,"severity":136,"severity_score":137,"severity_version":138,"severity_source":139,"severity_vector":140,"severity_status":131},false,"low",0.00031,"medium",6.2,"v3.1","cve.org","CVSS:3.1/AV:L/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:H",[142,148,154,158,162,166],{"url":143,"sources":144,"tags":146},"https://xenbits.xenproject.org/xsa/advisory-424.txt",[139,145],"nvd",[147],"Third Party Advisory",{"url":149,"sources":150,"tags":151},"http://www.openwall.com/lists/oss-security/2022/12/08/3",[139,145],[152,153,147],"Mailing List","Patch",{"url":155,"sources":156,"tags":157},"http://www.openwall.com/lists/oss-security/2022/12/08/2",[139,145],[152,153,147],{"url":159,"sources":160,"tags":161},"http://www.openwall.com/lists/oss-security/2022/12/09/2",[139,145],[152,153,147],{"url":163,"sources":164,"tags":165},"https://lists.debian.org/debian-lts-announce/2022/12/msg00031.html",[139,145],[152,147],{"url":167,"sources":168,"tags":169},"https://lists.debian.org/debian-lts-announce/2022/12/msg00034.html",[139,145],[152,147],[],{"date":172,"score":135,"percentile":173},"2026-06-03",0.09252,[175,179,182,185,188,191,193,196,199,202,205,208,211,213,216,220,223,226,229,232,235,238,241,243,246,249,252,255,258,261,264,267,270,272,275,279,282,285,288,291,294,297,300,303,305,308,311,314,316,319,321,323,327,330,333,336,339,342,345,348,351,353,356,359,361,363,366,369,372,375,378,380,382,384,387,390,393,396,399,401,403,406,409,412,415,418,421,424,427,430],{"date":176,"score":177,"percentile":178},"2025-11-04",0.00012,0.01208,{"date":180,"score":177,"percentile":181},"2025-11-05",0.01228,{"date":183,"score":177,"percentile":184},"2025-11-06",0.0124,{"date":186,"score":177,"percentile":187},"2025-11-07",0.01243,{"date":189,"score":177,"percentile":190},"2025-11-08",0.01245,{"date":192,"score":177,"percentile":187},"2025-11-09",{"date":194,"score":177,"percentile":195},"2025-11-10",0.01233,{"date":197,"score":177,"percentile":198},"2025-11-11",0.01237,{"date":200,"score":177,"percentile":201},"2025-11-12",0.01239,{"date":203,"score":177,"percentile":204},"2025-11-13",0.01244,{"date":206,"score":177,"percentile":207},"2025-11-14",0.01259,{"date":209,"score":177,"percentile":210},"2025-11-15",0.01273,{"date":212,"score":177,"percentile":210},"2025-11-16",{"date":214,"score":177,"percentile":215},"2025-11-17",0.01264,{"date":217,"score":218,"percentile":219},"2025-11-18",0.00101,0.23914,{"date":221,"score":218,"percentile":222},"2025-11-19",0.2394,{"date":224,"score":218,"percentile":225},"2025-11-20",0.23951,{"date":227,"score":177,"percentile":228},"2025-11-21",0.01315,{"date":230,"score":177,"percentile":231},"2025-11-22",0.01312,{"date":233,"score":177,"percentile":234},"2025-11-23",0.013,{"date":236,"score":177,"percentile":237},"2025-11-24",0.01294,{"date":239,"score":177,"percentile":240},"2025-11-25",0.0129,{"date":242,"score":177,"percentile":181},"2025-11-26",{"date":244,"score":177,"percentile":245},"2025-11-27",0.01226,{"date":247,"score":177,"percentile":248},"2025-11-28",0.01231,{"date":250,"score":177,"percentile":251},"2025-11-29",0.01267,{"date":253,"score":177,"percentile":254},"2025-11-30",0.01276,{"date":256,"score":177,"percentile":257},"2025-12-01",0.01302,{"date":259,"score":177,"percentile":260},"2025-12-02",0.01298,{"date":262,"score":177,"percentile":263},"2025-12-03",0.01301,{"date":265,"score":177,"percentile":266},"2025-12-04",0.01275,{"date":268,"score":177,"percentile":269},"2025-12-05",0.01291,{"date":271,"score":177,"percentile":237},"2025-12-06",{"date":273,"score":177,"percentile":274},"2025-12-07",0.01292,{"date":276,"score":277,"percentile":278},"2025-12-08",0.00011,0.01048,{"date":280,"score":277,"percentile":281},"2025-12-09",0.0106,{"date":283,"score":277,"percentile":284},"2025-12-10",0.0107,{"date":286,"score":277,"percentile":287},"2025-12-11",0.01061,{"date":289,"score":277,"percentile":290},"2025-12-12",0.01058,{"date":292,"score":277,"percentile":293},"2025-12-13",0.01046,{"date":295,"score":277,"percentile":296},"2025-12-14",0.01043,{"date":298,"score":277,"percentile":299},"2025-12-15",0.0104,{"date":301,"score":277,"percentile":302},"2025-12-16",0.01044,{"date":304,"score":277,"percentile":302},"2025-12-17",{"date":306,"score":277,"percentile":307},"2025-12-18",0.01034,{"date":309,"score":277,"percentile":310},"2025-12-19",0.01038,{"date":312,"score":277,"percentile":313},"2025-12-20",0.01036,{"date":315,"score":277,"percentile":278},"2025-12-21",{"date":317,"score":277,"percentile":318},"2025-12-22",0.01049,{"date":320,"score":277,"percentile":278},"2025-12-23",{"date":322,"score":277,"percentile":278},"2025-12-24",{"date":324,"score":325,"percentile":326},"2025-12-25",0.00013,0.01564,{"date":328,"score":325,"percentile":329},"2025-12-26",0.01565,{"date":331,"score":325,"percentile":332},"2025-12-27",0.01555,{"date":334,"score":325,"percentile":335},"2025-12-28",0.01558,{"date":337,"score":325,"percentile":338},"2025-12-29",0.01549,{"date":340,"score":325,"percentile":341},"2025-12-30",0.01543,{"date":343,"score":325,"percentile":344},"2025-12-31",0.01541,{"date":346,"score":325,"percentile":347},"2026-01-01",0.01559,{"date":349,"score":325,"percentile":350},"2026-01-02",0.01562,{"date":352,"score":325,"percentile":326},"2026-01-03",{"date":354,"score":325,"percentile":355},"2026-01-04",0.01536,{"date":357,"score":325,"percentile":358},"2026-01-05",0.01542,{"date":360,"score":325,"percentile":355},"2026-01-06",{"date":362,"score":325,"percentile":358},"2026-01-07",{"date":364,"score":325,"percentile":365},"2026-01-08",0.01556,{"date":367,"score":325,"percentile":368},"2026-01-09",0.01571,{"date":370,"score":325,"percentile":371},"2026-01-10",0.01585,{"date":373,"score":325,"percentile":374},"2026-01-11",0.01578,{"date":376,"score":325,"percentile":377},"2026-01-12",0.01561,{"date":379,"score":325,"percentile":365},"2026-01-13",{"date":381,"score":325,"percentile":350},"2026-01-14",{"date":383,"score":325,"percentile":368},"2026-01-15",{"date":385,"score":325,"percentile":386},"2026-01-16",0.01581,{"date":388,"score":325,"percentile":389},"2026-01-17",0.01584,{"date":391,"score":325,"percentile":392},"2026-01-18",0.01595,{"date":394,"score":325,"percentile":395},"2026-01-19",0.01583,{"date":397,"score":325,"percentile":398},"2026-01-20",0.01569,{"date":400,"score":325,"percentile":350},"2026-01-21",{"date":402,"score":325,"percentile":350},"2026-01-22",{"date":404,"score":325,"percentile":405},"2026-01-23",0.0167,{"date":407,"score":325,"percentile":408},"2026-01-24",0.01677,{"date":410,"score":325,"percentile":411},"2026-01-25",0.01678,{"date":413,"score":325,"percentile":414},"2026-01-26",0.01675,{"date":416,"score":325,"percentile":417},"2026-01-27",0.01667,{"date":419,"score":325,"percentile":420},"2026-01-28",0.01665,{"date":422,"score":325,"percentile":423},"2026-01-29",0.01679,{"date":425,"score":325,"percentile":426},"2026-01-30",0.01685,{"date":428,"score":325,"percentile":429},"2026-01-31",0.01706,{"date":431,"score":325,"percentile":432},"2026-02-01",0.01733,[434,439],{"source":139,"cvss_v2_0":9,"cvss_v3_0":9,"cvss_v3_1":435,"cvss_v4_0":9},{"baseScore":137,"baseSeverity":436,"vectorString":140,"impactScore":437,"exploitabilityScore":438},"MEDIUM",6,6.4,{"source":145,"cvss_v2_0":9,"cvss_v3_0":9,"cvss_v3_1":440,"cvss_v4_0":9},{"baseScore":441,"baseSeverity":436,"vectorString":442,"impactScore":437,"exploitabilityScore":443},5.5,"CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:N/I:N/A:H",4.6,[445,454],{"ecosystem":9,"name":446,"vendor":447,"product":448,"cpe_part":449,"purl_type":9,"purl_namespace":9,"purl_name":9,"source":9,"versions":450},"debian linux","debian","debian_linux","o",[451],{"version":452,"is_range":133,"range_type":453,"version_start":9,"version_start_type":9,"version_end":9,"version_end_type":9,"fixed_in":9},"10.0","cpe",{"ecosystem":9,"name":455,"vendor":456,"product":457,"cpe_part":449,"purl_type":9,"purl_namespace":9,"purl_name":9,"source":9,"versions":458},"linux kernel","linux","linux_kernel",[459],{"version":460,"is_range":461,"range_type":453,"version_start":9,"version_start_type":9,"version_end":462,"version_end_type":463,"fixed_in":9},"lt6.0",true,"6.0","excluding"]