Lucene search

K
cveRedhatCVE-2022-1199
HistoryAug 29, 2022 - 3:15 p.m.

CVE-2022-1199

2022-08-2915:15:10
CWE-476
CWE-416
redhat
web.nvd.nist.gov
126
5
linux kernel
flaw
vulnerability
cve-2022-1199
null-ptr-deref
use-after-free

CVSS3

7.5

Attack Vector

NETWORK

Attack Complexity

LOW

Privileges Required

NONE

User Interaction

NONE

Scope

UNCHANGED

Confidentiality Impact

NONE

Integrity Impact

NONE

Availability Impact

HIGH

CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:H

AI Score

6.9

Confidence

High

EPSS

0.003

Percentile

68.0%

A flaw was found in the Linux kernel. This flaw allows an attacker to crash the Linux kernel by simulating amateur radio from the user space, resulting in a null-ptr-deref vulnerability and a use-after-free vulnerability.

Affected configurations

Nvd
Vulners
Node
linuxlinux_kernelRange5.17.14
OR
linuxlinux_kernelMatch5.18-
OR
linuxlinux_kernelMatch5.18rc1
OR
linuxlinux_kernelMatch5.18rc2
OR
linuxlinux_kernelMatch5.18rc3
Node
redhatenterprise_linuxMatch6.0
Node
netappactive_iq_unified_managerMatch-vmware_vsphere
Node
netapph300s_firmwareMatch-
AND
netapph300sMatch-
Node
netapph500s_firmwareMatch-
AND
netapph500sMatch-
Node
netapph700s_firmwareMatch-
AND
netapph700sMatch-
Node
netapph410s_firmwareMatch-
AND
netapph410sMatch-
Node
netapph410c_firmwareMatch-
AND
netapph410cMatch-
VendorProductVersionCPE
linuxlinux_kernel*cpe:2.3:o:linux:linux_kernel:*:*:*:*:*:*:*:*
linuxlinux_kernel5.18cpe:2.3:o:linux:linux_kernel:5.18:-:*:*:*:*:*:*
linuxlinux_kernel5.18cpe:2.3:o:linux:linux_kernel:5.18:rc1:*:*:*:*:*:*
linuxlinux_kernel5.18cpe:2.3:o:linux:linux_kernel:5.18:rc2:*:*:*:*:*:*
linuxlinux_kernel5.18cpe:2.3:o:linux:linux_kernel:5.18:rc3:*:*:*:*:*:*
redhatenterprise_linux6.0cpe:2.3:o:redhat:enterprise_linux:6.0:*:*:*:*:*:*:*
netappactive_iq_unified_manager-cpe:2.3:a:netapp:active_iq_unified_manager:-:*:*:*:*:vmware_vsphere:*:*
netapph300s_firmware-cpe:2.3:o:netapp:h300s_firmware:-:*:*:*:*:*:*:*
netapph300s-cpe:2.3:h:netapp:h300s:-:*:*:*:*:*:*:*
netapph500s_firmware-cpe:2.3:o:netapp:h500s_firmware:-:*:*:*:*:*:*:*
Rows per page:
1-10 of 171

CNA Affected

[
  {
    "vendor": "n/a",
    "product": "Kernel",
    "versions": [
      {
        "version": "Fixed in kernel v5.18-rc4",
        "status": "affected"
      }
    ]
  }
]

Social References

More

CVSS3

7.5

Attack Vector

NETWORK

Attack Complexity

LOW

Privileges Required

NONE

User Interaction

NONE

Scope

UNCHANGED

Confidentiality Impact

NONE

Integrity Impact

NONE

Availability Impact

HIGH

CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:H

AI Score

6.9

Confidence

High

EPSS

0.003

Percentile

68.0%