CVE-2022-1419

Updated: 2024-11-24 05:27:49.769484

Description:

The root cause of this vulnerability is that the ioctl$DRM_IOCTL_MODE_DESTROY_DUMB can decrease refcount of *drm_vgem_gem_object *(created in *vgem_gem_dumb_create*) concurrently, and *vgem_gem_dumb_create *will access the freed drm_vgem_gem_object.


Links NIST CIRCL RHEL Ubuntu

Severity

Severity Score
CVSS Version 2.x MEDIUM 4.6000000000000005
CVSS Version 3.x HIGH 7.8

Status

OS name Project name Version Score Severity Status Errata Last updated

Statement

CentOS 6 ELS kernel 2.6.32 7.8 HIGH Not Vulnerable 2022-09-07 11:05:13
CentOS 7 ELS kernel 3.10.0 7.8 HIGH Released CLSA-2024:1720468480 2024-07-23 17:33:08
CentOS 8.4 ELS kernel 4.18.0 7.8 HIGH Not Vulnerable 2022-09-07 11:05:13
CentOS 8.5 ELS kernel 4.18.0 7.8 HIGH Not Vulnerable 2022-09-07 11:05:13
CloudLinux 6 ELS kernel 2.6.32 7.8 HIGH Not Vulnerable 2022-09-07 11:05:13
Oracle Linux 6 ELS kernel 2.6.32 7.8 HIGH Not Vulnerable 2022-09-07 11:05:13
RHEL 7 ELS kernel 3.10.0 7.8 HIGH Released CLSA-2025:1750353839 2025-06-20 04:45:06
Ubuntu 16.04 ELS linux 4.4.0 7.8 HIGH Released CLSA-2022:1667414297 2022-11-02 17:05:48
Ubuntu 16.04 ELS linux-hwe 4.15.0 7.8 HIGH Released CLSA-2022:1664906081 2022-10-04 14:02:48
Ubuntu 18.04 ELS linux 4.15.0 7.8 HIGH Already Fixed 2023-06-02 09:10:36