CVE-2022-0185
גבוהה 8.4 מנוצלת בשטח (KEV)
ניצול פעיל מאומת — קטלוג CISA KEV
- שם
- Linux Kernel Heap-Based Buffer Overflow Vulnerability
- נוסף לקטלוג
- יעד טיפול (פדרלי)
- פעולה נדרשת
- Apply updates per vendor instructions or discontinue use of the product if updates are unavailable.
תיאור (מקור, אנגלית)
A heap-based buffer overflow flaw was found in the way the legacy_parse_param function in the Filesystem Context functionality of the Linux kernel verified the supplied parameters length. An unprivileged (in case of unprivileged user namespaces enabled, otherwise needs namespaced CAP_SYS_ADMIN privilege) local user able to open a filesystem that does not support the Filesystem Context API (and thus fallbacks to legacy handling) could use this flaw to escalate their privileges on the system.
מדדים
- CVSS 3.1
-
8.4 (HIGH)
מקור הציון: NVD
CVSS:3.1/AV:L/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H - EPSS — סבירות ניצול
- 25% (אחוזון 100) נכון ל-25/7/2026
- CWE
- CWE-190, CWE-191
מוצרים מושפעים
linux: linux kernel; netapp: h410c firmware; netapp: h410c; netapp: h300s firmware; netapp: h300s; netapp: h500s firmware; netapp: h500s; netapp: h700s firmware; netapp: h700s; netapp: h300e firmware; netapp: h300e; netapp: h500e firmware; netapp: h500e; netapp: h700e firmware; netapp: h700e
קישורים
- https://git.kernel.org/pub/scm/linux/kernel/git/torvalds/linux.git/commit/?id=… Mailing ListPatch
- https://www.openwall.com/lists/oss-security/2022/01/18/7 Mailing ListPatchThird Party Advisory
- https://git.kernel.org/pub/scm/linux/kernel/git/torvalds/linux.git/commit/?id=… Mailing ListPatch
- https://www.openwall.com/lists/oss-security/2022/01/18/7 Mailing ListPatchThird Party Advisory
- https://github.com/Crusaders-of-Rust/CVE-2022-0185 ExploitThird Party Advisory
- https://www.willsroot.io/2022/01/cve-2022-0185.html ExploitThird Party Advisory
- https://github.com/Crusaders-of-Rust/CVE-2022-0185 ExploitThird Party Advisory
- https://www.willsroot.io/2022/01/cve-2022-0185.html ExploitThird Party Advisory
- https://security.netapp.com/advisory/ntap-20220225-0003/ Third Party Advisory
- https://security.netapp.com/advisory/ntap-20220225-0003/ Third Party Advisory