Predictive Vulnerability Intelligence.

Product

  • Product
  • Pricing
  • Documentation

Company

  • About
  • Partnerships
  • Blog
  • Support

Legal

  • Terms
  • Privacy
  • Data Licensing

© 2026 FAUCET Technologies LLC. All rights reserved.

CVE-2022-48856

17
FAUCET Score

CVE-2022-48856 is a refcount leak vulnerability in the gianfar ethtool driver within the Linux kernel, specifically affecting the gfar_get_ts_info function. This medium-severity flaw (CVSS 5.5) could allow a local attacker to cause a denial of service (resource exhaustion) with low attack complexity. There is currently no evidence of active exploitation, public exploit code (Metasploit, Nuclei, ExploitDB), or significant community discussion or media coverage surrounding this CVE.

Impacted Technologies

VendorProductVersion(s)CPE
>= 4.18, < 4.19.235CPE matchmatch criteria
cpe:2.3:o:linux:linux_kernel:*:*:*:*:*:*:*:*
>= 4.20, < 5.4.185CPE matchmatch criteria
cpe:2.3:o:linux:linux_kernel:*:*:*:*:*:*:*:*
>= 5.5, < 5.10.106CPE matchmatch criteria
cpe:2.3:o:linux:linux_kernel:*:*:*:*:*:*:*:*
>= 5.11, < 5.15.29CPE matchmatch criteria
cpe:2.3:o:linux:linux_kernel:*:*:*:*:*:*:*:*
>= 5.16, < 5.16.15CPE matchmatch criteria
cpe:2.3:o:linux:linux_kernel:*:*:*:*:*:*:*:*

CVSS Data

CVSS version used by this source: 3.1

5.5MEDIUM

CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:N/I:N/A:H

Attack Vector
LOCAL
Attack Complexity
LOW
Privileges Required
LOW
User Interaction
NONE
Scope
UNCHANGED
Confidentiality Impact
NONE
Integrity Impact
NONE
Availability Impact
HIGH
Exploitability Score
1.8
Impact Score
3.6
CvssVersion
3.1

Exploit Intelligence

EPSS Score
0.21%
Probability of exploitation in next 30 days
EPSS Percentile
11.5%
Percentile rank of EPSS score among Peer Group
As of 2026-07-27
Model: v2026.06.15
This CVE's current EPSS score of 0.0021 is in the 53rd percentile among its peer group of 15,940 CVEs.

Social Chatter

The average CVE in this peer group has 0.0 Twitter, 0.0 Reddit, 0.0 Bluesky, 0.0 Mastodon, and 0.1 GitHub mentions.

Media Mentions

No media coverage found for this CVE.

The average CVE in this peer group has 0.1 InfoSec Media, 0.0 Vendor Blog, and 0.0 Security Researcher mentions.

Remediation

Vendor Advisories (1)

redhatCVE-2022-48856Moderate

kernel: gianfar: ethtool: Fix refcount leak in gfar_get_ts_info

Jul 16, 2024

References

git.kernel.org / stable/c/0e1b9a2078e07fb1e6e91bf8badfd89ecab1e848
Patch
git.kernel.org / stable/c/21044e679ed535345042d2023f7df0ca8e897e2a
Patch
git.kernel.org / stable/c/2ac5b58e645c66932438bb021cb5b52097ce70b0
Patch
git.kernel.org / stable/c/6263f2eb93a85ad7df504daf0c341a7fb6bbe8a6
Patch
git.kernel.org / stable/c/f49f646f9ec296fc0afe7ae92c2bb47f23e3846c
Patch
git.kernel.org / stable/c/f7b3b520349193f8a82cca74daf366199e06add9
Patch