Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

redhat логотип

CVE-2022-1184

Опубликовано: 18 апр. 2022
Источник: redhat
CVSS3: 5.5
EPSS Низкий

Описание

A use-after-free flaw was found in fs/ext4/namei.c:dx_insert_block() in the Linux kernel’s filesystem sub-component. This flaw allows a local attacker with a user privilege to cause a denial of service.

Меры по смягчению последствий

Mitigation for this issue is either not available or the currently available options don't meet the Red Hat Product Security criteria comprising ease of use and deployment, applicability to widespread installation base, or stability.

Дополнительная информация

Статус:

Moderate
Дефект:
CWE-416
https://bugzilla.redhat.com/show_bug.cgi?id=2070205kernel: use-after-free and memory errors in ext4 when mounting and operating on a corrupted image

EPSS

Процентиль: 8%
0.00028
Низкий

5.5 Medium

CVSS3

Связанные уязвимости

CVSS3: 5.5
ubuntu
больше 3 лет назад

A use-after-free flaw was found in fs/ext4/namei.c:dx_insert_block() in the Linux kernel’s filesystem sub-component. This flaw allows a local attacker with a user privilege to cause a denial of service.

CVSS3: 5.5
nvd
больше 3 лет назад

A use-after-free flaw was found in fs/ext4/namei.c:dx_insert_block() in the Linux kernel’s filesystem sub-component. This flaw allows a local attacker with a user privilege to cause a denial of service.

CVSS3: 5.5
debian
больше 3 лет назад

A use-after-free flaw was found in fs/ext4/namei.c:dx_insert_block() i ...

oracle-oval
около 3 лет назад

ELSA-2022-10023: Unbreakable Enterprise kernel-container security update (IMPORTANT)

oracle-oval
около 3 лет назад

ELSA-2022-10022: Unbreakable Enterprise kernel security update (IMPORTANT)

EPSS

Процентиль: 8%
0.00028
Низкий

5.5 Medium

CVSS3