[Forgot Password]
Login  Register Subscribe

30479

 
 

423868

 
 

248364

 
 

909

 
 

195388

 
 

282

Paid content will be excluded from the download.


Download | Alert*
OVAL

ALAS2-2022-1833 --- kernel

ID: oval:org.secpod.oval:def:1700994Date: (C)2022-08-23   (M)2024-04-17
Class: PATCHFamily: unix




An out-of-bounds write flaw was found in the Linux kernel's framebuffer-based console driver functionality in the way a user triggers ioctl FBIOPUT_VSCREENINFO with malicious data. This flaw allows a local user to crash or potentially escalate their privileges on the system. The Linux kernel before 5.18.13 lacks a certain clear operation for the block starting symbol. This allows Xen PV guest OS users to cause a denial of service or gain privileges. An issue was discovered in the Linux kernel through 5.18.14. xfrm_expand_policies in net/xfrm/xfrm_policy.c can cause a refcount to be dropped twice

Platform:
Amazon Linux 2
Product:
kernel
perf
python-perf
Reference:
ALAS2-2022-1833
CVE-2021-33655
CVE-2022-36123
CVE-2022-36879
CVE    3
CVE-2022-36879
CVE-2021-33655
CVE-2022-36123
CPE    4
cpe:/o:linux:linux_kernel
cpe:/a:perf:perf
cpe:/a:python-perf:python-perf
cpe:/o:amazon:linux:2
...

© SecPod Technologies