← Back

CVE-2022-2978

nvd nist
Published: Aug 24, 2022Modified: Jun 17, 2026

JSON object

Loading...
7.8
Vector
CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H
Exploitability: 1.8 / Impact: 5.9
Source: NVD

Description

A flaw use after free in the Linux kernel NILFS file system was found in the way user triggers function security_inode_alloc to fail with following call to function nilfs_mdt_destroy. A local user could use this flaw to crash the system or potentially escalate their privileges on the system.

Affected (9)

1 product
Linux Kernel
1 product
Debian Linux
Configuration A
8 vulnerable
Vulnerable SoftwareAffected Versions
Linux
From 2.6.12 to 4.9.331
From 4.10 to 4.14.296
From 4.15 to 4.19.262
From 4.20 to 5.4.218
From 5.11 to 5.15.73
From 5.16 to 5.19.15
From 5.5 to 5.10.148
From 6.0 to 6.0.1
Configuration B
1 vulnerable
Vulnerable SoftwareAffected Versions
Version 10.0

References (4)

Source: secalert@redhat.com
Mailing ListThird Party Advisory
Source: af854a3a-2127-422b-91ae-364da2661108
Mailing ListThird Party Advisory

Timeline

No history available yet.