First published: Tue Apr 29 2025(Updated: )
Jann Horn discovered that the watch_queue event notification subsystem in the Linux kernel contained an out-of-bounds write vulnerability. A local attacker could use this to cause a denial of service (system crash) or escalate their privileges. (CVE-2022-0995) Several security issues were discovered in the Linux kernel. An attacker could possibly use these to compromise the system. This update corrects flaws in the following subsystems:
Affected Software | Affected Version | How to fix |
---|
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
(Contains the following vulnerabilities)
The severity of USN-7455-5 is considered high due to the potential for denial of service and privilege escalation.
To resolve USN-7455-5, update your Linux kernel to version 5.15.0-1082.89~20.04.1 or later.
USN-7455-5 affects Ubuntu 20.04 users running specific versions of the Linux kernel.
USN-7455-5 requires local access to exploit, meaning an attacker must have local user privileges.
USN-7455-5 is an out-of-bounds write vulnerability affecting the watch_queue event notification subsystem.