Lucene search

K
cnvdChina National Vulnerability DatabaseCNVD-2022-68564
HistoryJan 21, 2022 - 12:00 a.m.

Linux kernel heap buffer overflow vulnerability (CNVD-2022-68564)

2022-01-2100:00:00
China National Vulnerability Database
www.cnvd.org.cn
14

0.001 Low

EPSS

Percentile

25.7%

Linux kernel is the kernel used by the Linux Foundation’s open source operating system Linux. Linux kernel is vulnerable due to a security flaw caused by an integer underflow in the legacy_parse_param function in fs/fs_context.c. By sending a carefully crafted request, a locally authenticated attacker could exploit the vulnerability to cause a buffer overflow and execute arbitrary code on the system with root privileges.