Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

nvd логотип

CVE-2022-1280

Опубликовано: 13 апр. 2022
Источник: nvd
CVSS3: 6.3
CVSS2: 3.3
EPSS Низкий

Описание

A use-after-free vulnerability was found in drm_lease_held in drivers/gpu/drm/drm_lease.c in the Linux kernel due to a race problem. This flaw allows a local user privilege attacker to cause a denial of service (DoS) or a kernel information leak.

Ссылки

Уязвимые конфигурации

Конфигурация 1
cpe:2.3:o:linux:linux_kernel:*:*:*:*:*:*:*:*
Версия от 5.17 (включая) до 5.17.4 (включая)
Конфигурация 2
cpe:2.3:o:redhat:enterprise_linux:8.0:*:*:*:*:*:*:*

EPSS

Процентиль: 2%
0.00017
Низкий

6.3 Medium

CVSS3

3.3 Low

CVSS2

Дефекты

CWE-416
CWE-416

Связанные уязвимости

CVSS3: 6.3
ubuntu
около 3 лет назад

A use-after-free vulnerability was found in drm_lease_held in drivers/gpu/drm/drm_lease.c in the Linux kernel due to a race problem. This flaw allows a local user privilege attacker to cause a denial of service (DoS) or a kernel information leak.

CVSS3: 7
redhat
около 3 лет назад

A use-after-free vulnerability was found in drm_lease_held in drivers/gpu/drm/drm_lease.c in the Linux kernel due to a race problem. This flaw allows a local user privilege attacker to cause a denial of service (DoS) or a kernel information leak.

CVSS3: 6.3
debian
около 3 лет назад

A use-after-free vulnerability was found in drm_lease_held in drivers/ ...

suse-cvrf
около 3 лет назад

Security update for the Linux Kernel (Live Patch 15 for SLE 15 SP3)

suse-cvrf
около 3 лет назад

Security update for the Linux Kernel (Live Patch 2 for SLE 15 SP3)

EPSS

Процентиль: 2%
0.00017
Низкий

6.3 Medium

CVSS3

3.3 Low

CVSS2

Дефекты

CWE-416
CWE-416