A use-after-free flaw was found in the Linux kernel’s pipes functionality in how a user performs manipulations with the pipe post_one_notification() after free_pipe_info() that is already called. This flaw allows a local user to crash or potentially escalate their privileges on the system.
References
Link | Resource |
---|---|
https://bugzilla.redhat.com/show_bug.cgi?id=2089701 | Issue Tracking Patch Third Party Advisory |
https://lore.kernel.org/lkml/20220507115605.96775-1-tcs.kernel%40gmail.com/T/ | |
https://security.netapp.com/advisory/ntap-20220715-0002/ | Third Party Advisory |
History
No history.
MITRE Information
Status: PUBLISHED
Assigner: redhat
Published: 2022-05-26T00:00:00
Updated: 2022-10-07T00:00:00
Reserved: 2022-05-25T00:00:00
Link: CVE-2022-1882
JSON object: View
NVD Information
Status : Modified
Published: 2022-05-26T17:15:08.830
Modified: 2023-11-07T03:42:15.460
Link: CVE-2022-1882
JSON object: View
Redhat Information
No data.
CWE