CVE-2022-29800: Race Condition
A time-of-check-time-of-use (TOCTOU) race condition vulnerability was found in networkd-dispatcher. This flaw exists because there is a certain time between the scripts being discovered and them being run. An attacker can abuse this vulnerability to replace scripts that networkd-dispatcher believes to be owned by root with ones that are not.
Affected Software
Event History
Frequently Asked Questions
What is the severity of CVE-2022-29800?
CVE-2022-29800 has a severity rating that varies depending on the affected system and its environment.
How do I fix CVE-2022-29800?
To mitigate CVE-2022-29800, ensure that the scripts utilized by networkd-dispatcher are secured and monitored for unauthorized changes.
What systems are affected by CVE-2022-29800?
CVE-2022-29800 specifically affects 'Microsoft Windows Defender for Endpoint' on Linux platforms.
What type of vulnerability is CVE-2022-29800?
CVE-2022-29800 is classified as a time-of-check-time-of-use (TOCTOU) race condition vulnerability.
What can an attacker do with CVE-2022-29800?
An attacker can exploit CVE-2022-29800 to replace scripts before they are executed by networkd-dispatcher, potentially leading to unauthorized code execution.