First published: Mon Mar 14 2022(Updated: )
An out-of-bounds (OOB) memory write flaw was found in the Linux kernel’s watch_queue event notification subsystem. This flaw can overwrite parts of the kernel state, potentially allowing a local user to gain privileged access or cause a denial of service on the system.
Credit: secalert@redhat.com
Affected Software | Affected Version | How to fix |
---|---|---|
redhat/kernel | <5.17 | 5.17 |
Linux Kernel | >=5.8<5.10.106 | |
Linux Kernel | >=5.11<5.15.29 | |
Linux Kernel | >=5.16<5.16.5 | |
Linux Kernel | =5.17-rc1 | |
Linux Kernel | =5.17-rc2 | |
Linux Kernel | =5.17-rc3 | |
Linux Kernel | =5.17-rc4 | |
Linux Kernel | =5.17-rc5 | |
Linux Kernel | =5.17-rc6 | |
Linux Kernel | =5.17-rc7 | |
Red Hat Fedora | =35 | |
NetApp Baseboard Management Controller Firmware | ||
NetApp Baseboard Management Controller H300E | ||
NetApp Baseboard Management Controller Firmware | ||
NetApp Baseboard Management Controller H300S | ||
NetApp Baseboard Management Controller H410C | ||
NetApp Baseboard Management Controller H410C Firmware | ||
NetApp Baseboard Management Controller Firmware | ||
NetApp Baseboard Management Controller H410S | ||
NetApp Baseboard Management Controller H500E Firmware | ||
NetApp Baseboard Management Controller H500E Firmware | ||
NetApp Baseboard Management Controller Firmware | ||
NetApp Baseboard Management Controller H500S | ||
NetApp Baseboard Management Controller H610C | ||
NetApp Baseboard Management Controller H610C Firmware | ||
NetApp Baseboard Management Controller H610S Firmware | ||
NetApp Baseboard Management Controller H610S Firmware | ||
NetApp Baseboard Management Controller H615C | ||
NetApp Baseboard Management Controller H615C Firmware | ||
NetApp Baseboard Management Controller H700E Firmware | ||
NetApp Baseboard Management Controller H700E Firmware | ||
NetApp Baseboard Management Controller Firmware | ||
NetApp Baseboard Management Controller H700S | ||
NetApp H300E | ||
NetApp H300E Firmware | ||
NetApp H300S Firmware | ||
NetApp H300S Firmware | ||
NetApp H410C | ||
NetApp H410C Firmware | ||
NetApp H410S | ||
NetApp H410S Firmware | ||
NetApp H500S Firmware | ||
NetApp H500e Firmware | ||
NetApp H500e Firmware | ||
NetApp H500e Firmware | ||
NetApp H610C | ||
NetApp H610C Firmware | ||
NetApp HCI H610S Firmware | ||
NetApp H610S Firmware | ||
NetApp H615C | ||
NetApp H615C | ||
NetApp H700E | ||
NetApp H700E | ||
NetApp H700S | ||
NetApp H700S |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
The severity of CVE-2022-0995 is high with a CVSS score of 7.8.
CVE-2022-0995 affects the Linux kernel's watch_queue event notification subsystem, allowing for an out-of-bounds (OOB) memory write.
The potential impact of CVE-2022-0995 is gaining privileged access or causing a denial of service on the system.
The Linux kernel versions 5.8-5.10.106, 5.11-5.15.29, and 5.16-5.16.5 are affected by CVE-2022-0995.
The fix for CVE-2022-0995 is available in kernel version 5.17 and above.