CVE-2022-0995
HIGH(7.8)KEV — Aktiv ausgenutztCVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H
- CVSS 7.8 — Hoch
- Im CISA KEV-Katalog (aktiv ausgenutzt)
Erwähnungen (letzte 60 Tage)
CISA KEV
Bestätigt ausgenutzt
EPSS-Score
9.5%
Exploit-Wahrscheinlichkeit (30 Tage)
CVSS Score
7.8
Technische Schwere
SecBoard-Einordnung
CVE-2022-0995 beschreibt eine Out-of-Bounds (OOB) Speicherfehler im watch_queue Ereignisbenachrichtigungssubsystem des Linux-Kernels. Diese Schwachstelle ermöglicht es, Teile des Kernel-Zustands zu überschreiben. Die potenzielle Auswirkung ist ein lokaler Privilegienerwerb oder eine Denial-of-Service-Bedingung auf dem betroffenen System.
KI-gestützte Einordnung auf Basis der NVD-Daten.
Beschreibung
An out-of-bounds (OOB) memory write flaw was found in the Linux kernel’s watch_queue event notification subsystem. This flaw can overwrite parts of the kernel state, potentially allowing a local user to gain privileged access or cause a denial of service on the system.
Betroffene Produkte
- cpe:2.3:o:linux:linux_kernel:*:*:*:*:*:*:*:*
- cpe:2.3:o:linux:linux_kernel:*:*:*:*:*:*:*:*
- cpe:2.3:o:linux:linux_kernel:*:*:*:*:*:*:*:*
- cpe:2.3:o:linux:linux_kernel:5.17:rc1:*:*:*:*:*:*
- cpe:2.3:o:linux:linux_kernel:5.17:rc2:*:*:*:*:*:*
- cpe:2.3:o:linux:linux_kernel:5.17:rc3:*:*:*:*:*:*
- cpe:2.3:o:linux:linux_kernel:5.17:rc4:*:*:*:*:*:*
- cpe:2.3:o:linux:linux_kernel:5.17:rc5:*:*:*:*:*:*
- cpe:2.3:o:linux:linux_kernel:5.17:rc6:*:*:*:*:*:*
- cpe:2.3:o:linux:linux_kernel:5.17:rc7:*:*:*:*:*:*
- cpe:2.3:o:fedoraproject:fedora:35:*:*:*:*:*:*:*
- cpe:2.3:o:netapp:h300e_firmware:-:*:*:*:*:*:*:*
- cpe:2.3:o:netapp:h300s_firmware:-:*:*:*:*:*:*:*
- cpe:2.3:o:netapp:h410c_firmware:-:*:*:*:*:*:*:*
- cpe:2.3:o:netapp:h410s_firmware:-:*:*:*:*:*:*:*
- cpe:2.3:o:netapp:h500e_firmware:-:*:*:*:*:*:*:*
- cpe:2.3:o:netapp:h500s_firmware:-:*:*:*:*:*:*:*
- cpe:2.3:o:netapp:h610c_firmware:-:*:*:*:*:*:*:*
- cpe:2.3:o:netapp:h610s_firmware:-:*:*:*:*:*:*:*
- cpe:2.3:o:netapp:h615c_firmware:-:*:*:*:*:*:*:*
Referenzen
- http://packetstormsecurity.com/files/166770/Linux-watch_queue-Filter-Out-Of-Boun...
- http://packetstormsecurity.com/files/166815/Watch-Queue-Out-Of-Bounds-Write.html
- https://bugzilla.redhat.com/show_bug.cgi?id=2063786
- https://git.kernel.org/pub/scm/linux/kernel/git/torvalds/linux.git/commit/?id=93...
- https://security.netapp.com/advisory/ntap-20220429-0001/
- http://packetstormsecurity.com/files/166770/Linux-watch_queue-Filter-Out-Of-Boun...
- http://packetstormsecurity.com/files/166815/Watch-Queue-Out-Of-Bounds-Write.html
- https://bugzilla.redhat.com/show_bug.cgi?id=2063786
- https://git.kernel.org/pub/scm/linux/kernel/git/torvalds/linux.git/commit/?id=93...
- https://security.netapp.com/advisory/ntap-20220429-0001/