Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

redhat логотип

CVE-2022-1184

Опубликовано: 18 апр. 2022
Источник: redhat
CVSS3: 5.5

Описание

A use-after-free flaw was found in fs/ext4/namei.c:dx_insert_block() in the Linux kernel’s filesystem sub-component. This flaw allows a local attacker with a user privilege to cause a denial of service.

Меры по смягчению последствий

Mitigation for this issue is either not available or the currently available options don't meet the Red Hat Product Security criteria comprising ease of use and deployment, applicability to widespread installation base, or stability.

Дополнительная информация

Статус:

Moderate
Дефект:
CWE-416
https://bugzilla.redhat.com/show_bug.cgi?id=2070205kernel: use-after-free and memory errors in ext4 when mounting and operating on a corrupted image

5.5 Medium

CVSS3

Связанные уязвимости

CVSS3: 5.5
ubuntu
почти 3 года назад

A use-after-free flaw was found in fs/ext4/namei.c:dx_insert_block() in the Linux kernel’s filesystem sub-component. This flaw allows a local attacker with a user privilege to cause a denial of service.

CVSS3: 5.5
nvd
почти 3 года назад

A use-after-free flaw was found in fs/ext4/namei.c:dx_insert_block() in the Linux kernel’s filesystem sub-component. This flaw allows a local attacker with a user privilege to cause a denial of service.

CVSS3: 5.5
debian
почти 3 года назад

A use-after-free flaw was found in fs/ext4/namei.c:dx_insert_block() i ...

oracle-oval
больше 2 лет назад

ELSA-2022-10023: Unbreakable Enterprise kernel-container security update (IMPORTANT)

oracle-oval
больше 2 лет назад

ELSA-2022-10022: Unbreakable Enterprise kernel security update (IMPORTANT)

5.5 Medium

CVSS3

Уязвимость CVE-2022-1184