Lucene search

K
ubuntucveUbuntu.comUB:CVE-2022-4415
HistoryJan 11, 2023 - 12:00 a.m.

CVE-2022-4415

2023-01-1100:00:00
ubuntu.com
ubuntu.com
25
cve-2022-4415
systemd
local information leak

5.5 Medium

CVSS3

Attack Vector

LOCAL

Attack Complexity

LOW

Privileges Required

LOW

User Interaction

NONE

Scope

UNCHANGED

Confidentiality Impact

HIGH

Integrity Impact

NONE

Availability Impact

NONE

CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:N/A:N

0.0004 Low

EPSS

Percentile

9.1%

A vulnerability was found in systemd. This security flaw can cause a local
information leak due to systemd-coredump not respecting the
fs.suid_dumpable kernel setting.

Bugs

OSVersionArchitecturePackageVersionFilename
ubuntu20.04noarchsystemd< 245.4-4ubuntu3.20UNKNOWN
ubuntu22.04noarchsystemd< 249.11-0ubuntu3.7UNKNOWN
ubuntu22.10noarchsystemd< 251.4-1ubuntu7.1UNKNOWN

5.5 Medium

CVSS3

Attack Vector

LOCAL

Attack Complexity

LOW

Privileges Required

LOW

User Interaction

NONE

Scope

UNCHANGED

Confidentiality Impact

HIGH

Integrity Impact

NONE

Availability Impact

NONE

CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:N/A:N

0.0004 Low

EPSS

Percentile

9.1%