VDB
CVE-2022-1043
CVE-2022-1043
PUBLISHED
Es existiert eine Schwachstelle im Linux Kernel. Der Fehler besteht in der io_uring-Implementierung. Ein lokaler Angreifer kann diese Schwachstelle ausnutzen, um den Systemspeicher zu beschädigen, das System zum Absturz zu bringen oder seine Rechte zu erweitern.
EPSS 18.51% · 95.4th percentile
Risk Scores
EPSS Score
18.51%
95.4th percentile
Affected Products
| Vendor | Product | Versions |
|---|---|---|
| Open Source | Open Source Linux Kernel | |
| NetApp | NetApp ActiveIQ Unified Manager for VMware vSphere | |
| Ubuntu | Ubuntu Linux |
Exploit Intelligence
- http://packetstormsecurity.com/files/170834/io_uring-Same-Type-Object-Reuse-Privilege-Escalation.html (nist-nvd)
- CIRCL seen: CVE-2022-1043 (circl-sighting)
- CIRCL seen: CVE-2022-1043 (circl-sighting)
- CIRCL seen: CVE-2022-1043 (circl-sighting)
- CIRCL seen: CVE-2022-1043 (circl-sighting)
- https://bugzilla.redhat.com/show_bug.cgi?id=1997328 (circl)
- https://www.zerodayinitiative.com/advisories/ZDI-22-362/ (circl)
- https://github.com/torvalds/linux/commit/a30f895ad3239f45012e860d4f94c1a388b36d14 (circl)
- https://access.redhat.com/security/cve/CVE-2022-1043 (circl)
- https://www.exploitalert.com/view-details.html?id=39290 (certbund)
…and 2 more exploits
Timeline
- Aug 29, 2022 CVE Published
- Aug 30, 2022 EPSS Score
- Nov 29, 2022 EPSS Score
- Jan 13, 2023 EPSS Score
- Feb 1, 2023 PoC Published
- Feb 1, 2023 PoC Published
- Feb 28, 2023 EPSS Score
- Mar 7, 2023 EPSS Score
- May 30, 2023 EPSS Score
- Jul 14, 2023 EPSS Score
- Oct 13, 2023 EPSS Score
- Nov 28, 2023 EPSS Score
References
- https://wid.cert-bund.de/.well-known/csaf/white/2022/wid-sec-w-2022-1323.json advisory
- https://wid.cert-bund.de/portal/wid/securityadvisory?name=WID-SEC-2022-1323 advisory
- https://security.netapp.com/advisory/ntap-20230427-0011/ advisory
- https://nvd.nist.gov/vuln/detail/CVE-2022-0812 advisory
- https://nvd.nist.gov/vuln/detail/CVE-2022-1043 advisory
- https://access.redhat.com/security/cve/CVE-2022-0812 advisory
- https://access.redhat.com/security/cve/CVE-2022-1043 advisory
- https://ubuntu.com/security/CVE-2022-0812 advisory
- https://ubuntu.com/security/notices/USN-5669-1 advisory
- https://ubuntu.com/security/notices/USN-5669-2 advisory
- https://ubuntu.com/security/notices/USN-5678-1 advisory
- https://ubuntu.com/security/notices/USN-5679-1 advisory
- https://ubuntu.com/security/notices/USN-5684-1 advisory
- https://ubuntu.com/security/notices/USN-5687-1 advisory
- https://ubuntu.com/security/notices/USN-5695-1 advisory
- https://www.exploitalert.com/view-details.html?id=39290 exploit