CVE-2022-3649

Updated: 2023-02-28 19:39:34.870669

Description:

A vulnerability was found in Linux Kernel. It has been classified as problematic. Affected is the function nilfs_new_inode of the file fs/nilfs2/inode.c of the component BPF. The manipulation leads to use after free. It is possible to launch the attack remotely. It is recommended to apply a patch to fix this issue. The identifier of this vulnerability is VDB-211992.


Links NIST CIRCL RHEL Ubuntu

Severity

Severity Score
CVSS Version 2.x 0
CVSS Version 3.x HIGH 7

Status

OS name Project name Version Score Severity Status Errata Last updated
CentOS 6 ELS kernel 2.6.32 7 HIGH Needs Triage 2022-11-30 10:48:35
CentOS 8.4 ELS kernel 4.18.0-305.25.1 7 HIGH Needs Triage 2022-11-30 10:48:39
CentOS 8.5 ELS kernel 4.18.0-348.7.1 7 HIGH Needs Triage 2022-11-30 10:48:38
CloudLinux 6 ELS kernel 2.6.32 7 HIGH Needs Triage 2022-11-30 10:48:34
Oracle Linux 6 ELS kernel 2.6.32 7 HIGH Needs Triage 2022-11-30 10:48:37
Ubuntu 16.04 ELS linux 4.4.0 7 HIGH Released CLSA-2022:1670261781 2022-12-05 13:03:12
Ubuntu 16.04 ELS linux-hwe 4.15.0 7 HIGH Released CLSA-2023:1677764911 2023-03-02 10:05:27