CVE-2022-0995: Linux Kernel Out-of-Bounds Write Vulnerability
An out-of-bounds (OOB) memory write flaw was found in the Linux kernel’s watchqueue event notification subsystem. This flaw can overwrite parts of the kernel state, potentially allowing a local user to gain privileged access or cause a denial of service on the system.
Other sources
Linux Kernel contains an out-of-bounds memory write vulnerability which could allow a local user to gain privileged access or cause a denial of service on the system.
— CISA
The watchqueue event notification subsystem in the kernel has a couple of out of bounds writes that can be triggered by any user. These can be used to overwrite parts of the kernel state, potentially allowing the user to gain privileged access to or panic the system.
https://git.kernel.org/pub/scm/linux/kernel/git/torvalds/linux.git/commit/?id=93ce93587d36493f2f86921fa79921b3cba63fbb
— Red Hat
Affected Software
Remediation
Recommended actions to resolve this vulnerability, in priority order.
- Upgrade
Upgrade
debian/linuxto a version that resolves this vulnerability.Fixed in 5.10.223-1Fixed in 5.10.234-1Fixed in 6.1.129-1Fixed in 6.1.135-1Fixed in 6.12.25-1 - Upgrade
Upgrade
redhat/kernelto a version that resolves this vulnerability.Fixed in 5.17 - Compensating control
Apply vendor-provided mitigations for the Linux kernel watch_queue event notification subsystem out-of-bounds write vulnerability (commit id 93ce93587d36493f2f86921fa79921b3cba63fbb), following CISA BOD 26-04 Prioritizing Security Updates Based on Risk guidance and CISA “Forensics Triage Requirements” guidance.
Event History
Frequently Asked Questions
What is the severity of CVE-2022-0995?
The severity of CVE-2022-0995 is high with a CVSS score of 7.8.
How does CVE-2022-0995 affect the Linux kernel?
CVE-2022-0995 affects the Linux kernel's watch_queue event notification subsystem, allowing for an out-of-bounds (OOB) memory write.
What is the potential impact of CVE-2022-0995?
The potential impact of CVE-2022-0995 is gaining privileged access or causing a denial of service on the system.
Which versions of the Linux kernel are affected by CVE-2022-0995?
The Linux kernel versions 5.8-5.10.106, 5.11-5.15.29, and 5.16-5.16.5 are affected by CVE-2022-0995.
Is there a fix available for CVE-2022-0995?
The fix for CVE-2022-0995 is available in kernel version 5.17 and above.