← Back to CVE List
CVE-2022-0995NVD
Vulnerability Summary
An out-of-bounds (OOB) memory write flaw was found in the Linux kernel’s watch_queue event notification subsystem. This flaw can overwrite parts of the kernel state, potentially allowing a local user to gain privileged access or cause a denial of service on the system.
CVSS v3.1 Base Metrics — Score 7.8 (HIGH)
Attack VectorLocal
Attack ComplexityLow
Privileges RequiredLow
User InteractionNone
ScopeUnchanged
ConfidentialityHigh
IntegrityHigh
AvailabilityHigh
Affected & Patched Versions
- Linux Linux Kernel >= 5.8 and < 5.10.106
- Linux Linux Kernel >= 5.11 and < 5.15.29
- Linux Linux Kernel >= 5.16 and < 5.16.5
- Linux Linux Kernel
- Fedoraproject Fedora
- Netapp H300e Firmware
- Netapp H300s Firmware
- Netapp H410c Firmware
- Netapp H410s Firmware
- Netapp H500e Firmware
- Netapp H500s Firmware
- Netapp H610c Firmware
- Netapp H610s Firmware
- Netapp H615c Firmware
- Netapp H700e Firmware
- Netapp H700s Firmware
- Linux Linux Kernel 5.10.106
- Linux Linux Kernel 5.15.29
- Linux Linux Kernel 5.16.5
External References
- http://packetstormsecurity.com/files/166770/Linux-watch_queue-Filter-Out-Of-Bounds-Write.html
- http://packetstormsecurity.com/files/166815/Watch-Queue-Out-Of-Bounds-Write.html
- https://bugzilla.redhat.com/show_bug.cgi?id=2063786
- https://git.kernel.org/pub/scm/linux/kernel/git/torvalds/linux.git/commit/?id=93ce93587d36493f2f86921fa79921b3cba63fbb
- https://security.netapp.com/advisory/ntap-20220429-0001/
- http://packetstormsecurity.com/files/166770/Linux-watch_queue-Filter-Out-Of-Bounds-Write.html
- http://packetstormsecurity.com/files/166815/Watch-Queue-Out-Of-Bounds-Write.html
- https://bugzilla.redhat.com/show_bug.cgi?id=2063786
- https://git.kernel.org/pub/scm/linux/kernel/git/torvalds/linux.git/commit/?id=93ce93587d36493f2f86921fa79921b3cba63fbb
- https://security.netapp.com/advisory/ntap-20220429-0001/
- https://www.cisa.gov/known-exploited-vulnerabilities-catalog?field_cve=CVE-2022-0995