Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

debian логотип

CVE-2022-24122

Опубликовано: 29 янв. 2022
Источник: debian
EPSS Низкий

Описание

kernel/ucount.c in the Linux kernel 5.14 through 5.16.4, when unprivileged user namespaces are enabled, allows a use-after-free and privilege escalation because a ucounts object can outlive its namespace.

Пакеты

ПакетСтатусВерсия исправленияРелизТип
linuxfixed5.15.15-2package
linuxnot-affectedbullseyepackage
linuxnot-affectedbusterpackage
linuxnot-affectedstretchpackage

Примечания

  • https://www.openwall.com/lists/oss-security/2022/01/29/1

  • https://git.kernel.org/linus/f9d87929d451d3e649699d0f1d74f71f77ad38f5

EPSS

Процентиль: 41%
0.00186
Низкий

Связанные уязвимости

CVSS3: 7.8
ubuntu
больше 3 лет назад

kernel/ucount.c in the Linux kernel 5.14 through 5.16.4, when unprivileged user namespaces are enabled, allows a use-after-free and privilege escalation because a ucounts object can outlive its namespace.

CVSS3: 7.8
redhat
больше 3 лет назад

kernel/ucount.c in the Linux kernel 5.14 through 5.16.4, when unprivileged user namespaces are enabled, allows a use-after-free and privilege escalation because a ucounts object can outlive its namespace.

CVSS3: 7.8
nvd
больше 3 лет назад

kernel/ucount.c in the Linux kernel 5.14 through 5.16.4, when unprivileged user namespaces are enabled, allows a use-after-free and privilege escalation because a ucounts object can outlive its namespace.

CVSS3: 7.8
msrc
больше 3 лет назад

Описание отсутствует

CVSS3: 7.8
github
больше 3 лет назад

kernel/ucount.c in the Linux kernel 5.14 through 5.16.4, when unprivileged user namespaces are enabled, allows a use-after-free and privilege escalation because a ucounts object can outlive its namespace.

EPSS

Процентиль: 41%
0.00186
Низкий