Lucene search

K
ubuntucveUbuntu.comUB:CVE-2022-2961
HistoryAug 29, 2022 - 12:00 a.m.

CVE-2022-2961

2022-08-2900:00:00
ubuntu.com
ubuntu.com
19
linux kernel
use-after-free
plp rose
race condition
bind
rose_bind
privilege escalation

CVSS3

7

Attack Vector

LOCAL

Attack Complexity

HIGH

Privileges Required

LOW

User Interaction

NONE

Scope

UNCHANGED

Confidentiality Impact

HIGH

Integrity Impact

HIGH

Availability Impact

HIGH

CVSS:3.1/AV:L/AC:H/PR:L/UI:N/S:U/C:H/I:H/A:H

EPSS

0

Percentile

5.1%

A use-after-free flaw was found in the Linux kernel’s PLP Rose
functionality in the way a user triggers a race condition by calling bind
while simultaneously triggering the rose_bind() function. This flaw allows
a local user to crash or potentially escalate their privileges on the
system.

Bugs

Notes

Author Note
sbeattie this is not addressed by 2df91e397d85 (“net: rose: add netdev ref tracker to ‘struct rose_sock’”) (v6.0-rc1) according to Red Hat. unfixed upstream as of 2023.01.10

CVSS3

7

Attack Vector

LOCAL

Attack Complexity

HIGH

Privileges Required

LOW

User Interaction

NONE

Scope

UNCHANGED

Confidentiality Impact

HIGH

Integrity Impact

HIGH

Availability Impact

HIGH

CVSS:3.1/AV:L/AC:H/PR:L/UI:N/S:U/C:H/I:H/A:H

EPSS

0

Percentile

5.1%