First published: Fri Oct 21 2022(Updated: )
A vulnerability, which was classified as problematic, has been found in Linux Kernel. This issue affects the function nilfs_attach_log_writer of the file fs/nilfs2/segment.c of the component BPF. The manipulation leads to memory leak. The attack may be initiated remotely. It is recommended to apply a patch to fix this issue. The identifier VDB-211961 was assigned to this vulnerability.
Credit: cna@vuldb.com
Affected Software | Affected Version | How to fix |
---|---|---|
Linux Kernel | ||
Debian Linux | =10.0 | |
debian/linux | 5.10.223-1 5.10.234-1 6.1.129-1 6.1.128-1 6.12.20-1 6.12.21-1 |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
CVE-2022-3646 is classified as a problematic vulnerability, indicating a significant impact on the affected systems.
To fix CVE-2022-3646, update your Linux Kernel to versions 5.10.223-1, 5.10.226-1, 6.1.119-1, 6.1.123-1, 6.12.11-1 or 6.12.12-1.
CVE-2022-3646 affects the BPF component in the Linux Kernel, specifically the nilfs_attach_log_writer function.
Yes, CVE-2022-3646 can be exploited remotely, leading to a potential memory leak.
Debian GNU/Linux versions prior to the patched releases are impacted by CVE-2022-3646.