VDB
BDU%3A2022-04733
BDU%3A2022-04733
PUBLISHED
CVSS 7.199999809265137 HIGH
Уязвимость функция nft_set_elem_init файла net/netfilter/nf_tables_api.c компонента User Namespace Handler ядра операционной системы Linux, позволяющая нарушителю получить root доступ
Risk Scores
CVSS 2.0
7.199999809265137
Affected Products
| Vendor | Product | Versions |
|---|---|---|
| ООО «РусБИТех-Астра», ООО «Ред Софт», АО «ИВК», Novell Inc., Red Hat Inc., АО "НППКТ", Сообщество свободного программного обеспечения | Astra Linux Special Edition (запись в едином реестре российских программ №369), РЕД ОС (запись в едином реестре российских программ №3751), Альт 8 СП (запись в едином реестре российских программ №4305), Suse Linux Enterprise Server, Suse Linux Enterprise Desktop, Red Hat Enterprise Linux, SUSE Linux Enterprise High Performance Computing, ОСОН ОСнова Оnyx (запись в едином реестре российских программ №5913), Linux |
Timeline
- Aug 2, 2022 CVE Published
- Sep 30, 2024 CVE Updated
- Mar 19, 2026 Distribution Patch
- Mar 19, 2026 Distribution Patch
- Mar 19, 2026 Distribution Patch
- Mar 19, 2026 Distribution Patch
- Mar 19, 2026 Distribution Patch
- Mar 19, 2026 Distribution Patch
- Mar 19, 2026 Distribution Patch
- Mar 19, 2026 Distribution Patch
- Mar 19, 2026 Distribution Patch
- Mar 19, 2026 Distribution Patch
References
- http://packetstormsecurity.com/files/168191/Kernel-Live-Patch-Security-Notice-LSN-0089-1.html url
- http://packetstormsecurity.com/files/168543/Netfilter-nft_set_elem_init-Heap-Overflow-Privilege-Escalation.html url
- http://www.openwall.com/lists/oss-security/2022/07/05/1 url
- http://www.openwall.com/lists/oss-security/2022/08/06/5 url
- https://altsp.su/obnovleniya-bezopasnosti/ url
- https://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2022-34918 url
- https://git.kernel.org/pub/scm/linux/kernel/git/netdev/net.git/commit/?id=7e6bc1f6cabcd30aba0b11219d8e01b952eacbb6 url
- https://kernel.org/pub/linux/kernel/v5.x/ChangeLog-5.10.130 url
- https://kernel.org/pub/linux/kernel/v5.x/ChangeLog-5.15.54 url
- https://kernel.org/pub/linux/kernel/v5.x/ChangeLog-5.18.11 url
- https://lore.kernel.org/netfilter-devel/cd9428b6-7ffb-dd22-d949-d86f4869f452%40randorisec.fr/T/#u url
- https://lore.kernel.org/netfilter-devel/cd9428b6-7ffb-dd22-d949-d86f4869f452@randorisec.fr/T/#u url
- https://nvd.nist.gov/vuln/detail/CVE-2022-34918 url
- https://redos.red-soft.ru/support/secure/uyazvimosti/mnozhestvennye-uyazvimosti-yadra-os-cve-2022-2078-cve-2022-2588-cve-2022-2585-cve-2022-2586-cve-2022/ url
- https://security.netapp.com/advisory/ntap-20220826-0004/ url
- https://ubuntu.com/security/notices/USN-5540-1 url
- https://ubuntu.com/security/notices/USN-5544-1 url
- https://ubuntu.com/security/notices/USN-5545-1 url
- https://ubuntu.com/security/notices/USN-5560-1 url
- https://ubuntu.com/security/notices/USN-5560-2 url
…and 19 more