First published: Fri Oct 21 2022(Updated: )
A vulnerability was found in Linux Kernel. It has been classified as problematic. Affected is the function nilfs_new_inode of the file fs/nilfs2/inode.c of the component BPF. The manipulation leads to use after free. It is possible to launch the attack remotely. It is recommended to apply a patch to fix this issue. The identifier of this vulnerability is VDB-211992.
Credit: cna@vuldb.com cna@vuldb.com cna@vuldb.com
Affected Software | Affected Version | How to fix |
---|---|---|
Linux Kernel | <4.9.331 | |
Linux Kernel | >=4.10<4.14.296 | |
Linux Kernel | >=4.15<4.19.262 | |
Linux Kernel | >=4.20<5.4.220 | |
Linux Kernel | >=5.5<5.10.148 | |
Linux Kernel | >=5.11<5.15.74 | |
Linux Kernel | >=5.16<5.19.16 | |
Linux Kernel | >=6.0<6.0.2 | |
Debian Debian Linux | =10.0 | |
netapp active iq unified manager vsphere | ||
All of | ||
netapp h300s firmware | ||
netapp h300s | ||
All of | ||
NetApp H500S Firmware | ||
netapp h500s | ||
All of | ||
netapp h700s firmware | ||
netapp h700s | ||
All of | ||
netapp h410s firmware | ||
netapp h410s | ||
netapp h300s firmware | ||
netapp h300s | ||
NetApp H500S Firmware | ||
netapp h500s | ||
netapp h700s firmware | ||
netapp h700s | ||
netapp h410s firmware | ||
netapp h410s | ||
debian/linux | 5.10.223-1 5.10.226-1 6.1.123-1 6.1.119-1 6.12.11-1 6.12.12-1 |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
CVE-2022-3649 has been classified as a problematic vulnerability in the Linux Kernel.
To mitigate CVE-2022-3649, update to a patched version of the Linux Kernel, specifically the versions 5.10.223-1, 5.10.226-1, 6.1.123-1, 6.1.119-1, 6.12.11-1, or 6.12.12-1.
The vulnerability affects the BPF component, particularly the function nilfs_new_inode in the file fs/nilfs2/inode.c.
Yes, CVE-2022-3649 can be exploited remotely, making it a serious concern for systems running affected versions.
CVE-2022-3649 affects multiple versions of the Linux Kernel, specifically versions prior to 4.9.331 and between 4.10 to 6.0.2.