CVE-2022-0435
high · 8.8A stack overflow flaw was found in the Linux kernel's TIPC protocol functionality in the way a user sends a packet with malicious content where the number of domain member nodes is higher than the 64 allowed. This flaw allows a remote user to crash the system or possibly escalate their privileges if they have access to the TIPC network.
8.8
CVSS
68.0%
EPSS (exploit prob.)
99th
EPSS percentile
2022-03-25
Published
CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H
Weaknesses
CWE-787
Affected products
| Vendor | Product | Affected versions |
|---|---|---|
| linux | linux_kernel | >= 4.8, < 4.9.301 |
| linux | linux_kernel | >= 4.10, < 4.14.266 |
| linux | linux_kernel | >= 4.15, < 4.19.229 |
| linux | linux_kernel | >= 4.20, < 5.4.179 |
| linux | linux_kernel | >= 5.5, < 5.10.100 |
| linux | linux_kernel | >= 5.11, < 5.15.23 |
| linux | linux_kernel | >= 5.16, < 5.16.9 |
| linux | linux_kernel | 5.17 |
| linux | linux_kernel | 5.17 |
| linux | linux_kernel | 5.17 |
| linux | linux_kernel | 5.17 |
| redhat | codeready_linux_builder | 8.0 |
| redhat | codeready_linux_builder | 8.4 |
| redhat | codeready_linux_builder_eus | 8.2 |
| redhat | codeready_linux_builder_eus_for_power_little_endian | 8.2 |
| redhat | codeready_linux_builder_for_power_little_endian_eus | 8.0 |
| redhat | codeready_linux_builder_for_power_little_endian_eus | 8.4 |
| redhat | enterprise_linux | 8.0 |
| redhat | enterprise_linux_eus | 8.2 |
| redhat | enterprise_linux_eus | 8.4 |
| redhat | enterprise_linux_for_ibm_z_systems | 8.0 |
| redhat | enterprise_linux_for_ibm_z_systems_eus | 8.2 |
| redhat | enterprise_linux_for_ibm_z_systems_eus | 8.4 |
| redhat | enterprise_linux_for_power_little_endian | 8.0 |
| redhat | enterprise_linux_for_power_little_endian_eus | 8.2 |
| redhat | enterprise_linux_for_power_little_endian_eus | 8.4 |
| redhat | enterprise_linux_for_real_time | 8 |
| redhat | enterprise_linux_for_real_time_for_nfv | 8 |
| redhat | enterprise_linux_for_real_time_for_nfv_tus | 8.2 |
| redhat | enterprise_linux_for_real_time_for_nfv_tus | 8.4 |
| redhat | enterprise_linux_for_real_time_tus | 8.2 |
| redhat | enterprise_linux_for_real_time_tus | 8.4 |
| redhat | enterprise_linux_server_aus | 8.2 |
| redhat | enterprise_linux_server_aus | 8.4 |
| redhat | enterprise_linux_server_for_power_little_endian_update_services_for_sap_solutions | 8.2 |
| redhat | enterprise_linux_server_for_power_little_endian_update_services_for_sap_solutions | 8.4 |
| redhat | enterprise_linux_server_tus | 8.2 |
| redhat | enterprise_linux_server_tus | 8.4 |
| redhat | enterprise_linux_server_update_services_for_sap_solutions | 8.2 |
| redhat | enterprise_linux_server_update_services_for_sap_solutions | 8.4 |
Check a specific version with /api/v1/cve/match.
References
- https://bugzilla.redhat.com/show_bug.cgi?id=2048738
- https://security.netapp.com/advisory/ntap-20220602-0001/
- https://www.openwall.com/lists/oss-security/2022/02/10/1
- https://bugzilla.redhat.com/show_bug.cgi?id=2048738
- https://security.netapp.com/advisory/ntap-20220602-0001/
- https://www.openwall.com/lists/oss-security/2022/02/10/1
Query this programmatically:
curl https://evil-db.io/api/v1/cve/CVE-2022-0435