CVE-2022-24448

Updated: 2026-03-05 02:24:20.04493

Description:

An issue was discovered in fs/nfs/dir.c in the Linux kernel before 5.16.5. If an application sets the O_DIRECTORY flag, and tries to open a regular file, nfs_atomic_open() performs a regular lookup. If a regular file is found, ENOTDIR should occur, but the server instead returns uninitialized data in the file descriptor.


Links NIST CIRCL RHEL Ubuntu

Severity

Severity Score
CVSS Version 2.x LOW 1.9
CVSS Version 3.x LOW 3.3

Status

OS name Project name Version Score Severity Status Errata Last updated

Statement

AlmaLinux 9.2 ESU kernel 5.14.0 3.3 LOW Ignored 2023-11-21 04:12:29 This issue only occurs on systems using NFS client mounts when a local process deliberately opens a ...
CentOS 6 ELS kernel 2.6.32 3.3 LOW Ignored 2022-05-05 16:13:26 Ignored due to low severity
CentOS 7 ELS kernel 3.10.0 3.3 LOW Ignored 2023-09-19 09:30:22 Ignored due to low severity
CentOS 8.4 ELS kernel 4.18.0 3.3 LOW Ignored 2024-06-24 10:38:42 Ignored due to low severity
CentOS 8.5 ELS kernel 4.18.0 3.3 LOW Ignored 2024-06-24 10:38:18 Ignored due to low severity
CentOS Stream 8 ELS kernel 4.18.0 3.3 LOW Ignored 2024-10-08 06:17:15 Ignored due to low severity
CloudLinux 6 ELS kernel 2.6.32 3.3 LOW Ignored 2022-05-05 16:13:26 Ignored due to low severity
CloudLinux 7 ELS kernel 3.10.0 3.3 LOW Ignored 2024-10-08 06:17:15 Ignored due to low severity
Oracle Linux 6 ELS kernel 2.6.32 3.3 LOW Ignored 2022-05-05 16:13:26 Ignored due to low severity
Ubuntu 16.04 ELS linux-hwe 4.15.0 3.3 LOW Released 2024-12-18 00:30:38
Total: 12