CVE-2022-32981: Buffer Overflow
Published Jun 10, 2022
·Updated
An issue was discovered in the Linux kernel through 5.18.3 on powerpc 32-bit platforms. There is a buffer overflow in ptrace PEEKUSER and POKEUSER (aka PEEKUSR and POKEUSR) when accessing floating point registers.
Affected Software
10 affected components
Linux Linux kernel<=5.18.3
Linux Linux kernel=5.19-rc1
Linux Linux kernel>=3.13<4.9.318
Linux Linux kernel>=4.10<4.14.283
Linux Linux kernel>=4.15<4.19.247
Linux Linux kernel>=4.20<5.4.198
Linux Linux kernel>=5.5<5.10.122
Linux Linux kernel>=5.11<5.15.47
Linux Linux kernel>=5.16.0<5.17.15
Linux Linux kernel>=5.18<5.18.4
Remediation
Patch Available
Event History
Jun 10, 2022
CVE Published
via MITRE·07:42 PM
Data Sourced
via MITRE·07:42 PM
Description
Data Sourced
via NVD·08:15 PM
RemedyDescriptionSeverityWeaknessAffected Software
Frequently Asked Questions
1
Which systems are affected?
The issue affects Linux kernel installations through 5.18.3 running on 32-bit powerpc platforms. Other architectures are not identified as affected by the provided information.
2
What access does an attacker need to exploit this?
An attacker needs local access and low-level privileges. The CVSS vector indicates no user interaction is required.
3
What is the impact of successful exploitation?
Successful exploitation can affect confidentiality, integrity, and availability at a high level, according to the CVSS assessment.
4
Is a fix available?
Yes. A patch is available for this issue.