CVE-2022-2978

Updated: 2025-08-20 02:29:47.856117

Description:

A flaw use after free in the Linux kernel NILFS file system was found in the way user triggers function security_inode_alloc to fail with following call to function nilfs_mdt_destroy. A local user could use this flaw to crash the system or potentially escalate their privileges on the system.


Links NIST CIRCL RHEL Ubuntu

Severity

Severity Score
CVSS Version 2.x 0.0
CVSS Version 3.x HIGH 7.8

Status

OS name Project name Version Score Severity Status Errata Last updated

Statement

AlmaLinux 9.2 ESU kernel 5.14.0 7.8 HIGH Not Vulnerable 2024-01-20 03:00:16
CentOS 6 ELS kernel 2.6.32 7.8 HIGH Released CLSA-2026:1768669128 2026-01-28 13:44:26
CentOS 7 ELS kernel 3.10.0 7.8 HIGH Released CLSA-2026:1768110920 2026-01-20 11:28:34
CentOS 8.4 ELS kernel 4.18.0 7.8 HIGH Not Vulnerable 2023-08-29 04:27:48
CentOS 8.5 ELS kernel 4.18.0 7.8 HIGH Not Vulnerable 2023-08-29 04:27:48
CloudLinux 6 ELS kernel 2.6.32 7.8 HIGH Not Vulnerable 2023-04-13 03:22:29
Oracle Linux 6 ELS kernel 2.6.32 7.8 HIGH Released CLSA-2026:1769610819 2026-01-28 22:03:09
Oracle Linux 7 ELS kernel 3.10.0 7.8 HIGH Released CLSA-2026:1768824748 2026-01-19 16:50:11
RHEL 7 ELS kernel 3.10.0 7.8 HIGH Released CLSA-2026:1768825166 2026-01-19 16:50:10
Ubuntu 16.04 ELS linux-hwe 4.15.0 7.8 HIGH Released 2023-04-27 14:05:08
Total: 12