VDB

ALINUX2-SA-2022%3A0036

ALINUX2-SA-2022%3A0036 PUBLISHED CVSS 6.199999809265137 MEDIUM

Package updates are available for Alibaba Cloud Linux 2.1903 that fix the following vulnerabilities: CVE-2022-2586: A use-after-free flaw was found in nf_tables cross-table in the net/netfilter/nf_tables_api.c function in the Linux kernel. This flaw allows a local, privileged attacker to cause a use-after-free problem at the time of table deletion, possibly leading to local privilege escalation.

Risk Scores

CVSS 3.1
6.199999809265137
CVSS:3.1/AV:L/AC:L/PR:H/UI:N/S:U/C:H/I:H/A:H

Affected Products

VendorProductVersions
Alibaba Cloudkernel

Timeline

  • Aug 17, 2022 CVE Published
  • Aug 17, 2022 CVE Updated
Open in Interactive Console →
$ Console Community · 100/wk Open console ›