[Forgot Password]
Login  Register Subscribe

30479

 
 

423868

 
 

248364

 
 

909

 
 

195388

 
 

282

Paid content will be excluded from the download.


Download | Alert*
OVAL

CVE-2022-0847 -- SLES kernel, cluster-md-kmp-default, dlm-kmp-default, gfs2-kmp-default, ocfs2-kmp-default, reiserfs-kmp-default

ID: oval:org.secpod.oval:def:89046159Date: (C)2022-03-22   (M)2024-04-17
Class: VULNERABILITYFamily: unix




A flaw was found in the way the flags member of the new pipe buffer structure was lacking proper initialization in copy_page_to_iter_pipe and push_pipe functions in the Linux kernel and could thus contain stale values. An unprivileged local user could use this flaw to write to pages in the page cache backed by read only files and as such escalate their privileges on the system.

Platform:
SUSE Linux Enterprise Server 12 SP5
SUSE Linux Enterprise Server 15
SUSE Linux Enterprise Server 12 SP4
SUSE Linux Enterprise Desktop 15 SP3
SUSE Linux Enterprise Server 15 SP2
SUSE Linux Enterprise Server 15 SP3
SUSE Linux Enterprise Server 15 SP1
Product:
kernel
cluster-md-kmp-default
dlm-kmp-default
gfs2-kmp-default
ocfs2-kmp-default
reiserfs-kmp-default
Reference:
CVE-2022-0847
CVE    1
CVE-2022-0847
CPE    13
cpe:/o:suse:suse_linux_enterprise_server:15:sp1
cpe:/a:kmp:reiserfs_kmp_default
cpe:/a:dlm-kmp-default:dlm-kmp-default
cpe:/o:suse:suse_linux_enterprise_server:12:sp5
...

© SecPod Technologies