CVE-2022-2905Out-of-bounds Read in Kernel

CWE-125Out-of-bounds Read11 documents8 sources
Severity
5.5MEDIUMNVD
OSV7.0
EPSS
0.0%
top 97.97%
CISA KEV
Not in KEV
Exploit
No known exploits
Timeline
PublishedSep 9
Latest updateJun 15

Description

An out-of-bounds memory read flaw was found in the Linux kernel's BPF subsystem in how a user calls the bpf_tail_call function with a key larger than the max_entries of the map. This flaw allows a local user to gain unauthorized access to data.

CVSS vector

CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:N/A:NExploitability: 1.8 | Impact: 3.6

Affected Packages4 packages

NVDlinux/linux_kernel< 6.0+1
Debianlinux/linux_kernel< 5.10.140-1+3
Ubuntulinux/linux_kernel< 5.15.0-53.59
CVEListV5linux/linux_kernelLinux kernel 6.0-rc4

Also affects: Debian Linux 10.0, Enterprise Linux 8.0

Patches

🔴Vulnerability Details

4
OSV
linux-gcp-5.15, linux-gke-5.15, linux-intel-iotg, linux-raspi vulnerabilities2022-11-18
OSV
linux, linux-aws, linux-aws-5.15, linux-azure, linux-azure-5.15, linux-gcp, linux-gke, linux-gkeop, linux-hwe-5.15, linux-ibm, linux-kvm, linux-lowlatency, linux-lowlatency-hwe-5.15, linux-oracle, lin2022-11-17
OSV
CVE-2022-2905: An out-of-bounds memory read flaw was found in the Linux kernel's BPF subsystem in how a user calls the bpf_tail_call function with a key larger than2022-09-09
CVEList
CVE-2022-2905: An out-of-bounds memory read flaw was found in the Linux kernel's BPF subsystem in how a user calls the bpf_tail_call function with a key larger than2022-09-09

📋Vendor Advisories

6
CISA ICS
Siemens SIMATIC S7-1500 TM MFP BIOS2023-06-15
CISA ICS
Siemens SIMATIC S7-1500 TM MFP Linux Kernel2023-06-15
Ubuntu
Linux kernel vulnerabilities2022-11-17
Microsoft
An out-of-bounds memory read flaw was found in the Linux kernel's BPF subsystem in how a user calls the bpf_tail_call function with a key larger than the max_entries of the map. This flaw allows a loc2022-09-13
Red Hat
kernel: slab-out-of-bound read in bpf2022-08-26
CVE-2022-2905 — Out-of-bounds Read in Linux Kernel | cvebase