cbcvebase.
CVE-2022-3646
published 2022-10-21

CVE-2022-3646: A vulnerability, which was classified as problematic, has been found in Linux Kernel. This issue affects the function nilfs_attach_log_writer of the file…

medium4.3CVSS 3.1
AVNACLPRLUINSUCNINAL
A vulnerability, which was classified as problematic, has been found in Linux Kernel. This issue affects the function nilfs_attach_log_writer of the file fs/nilfs2/segment.c of the component BPF. The manipulation leads to memory leak. The attack may be initiated remotely. It is recommended to apply a patch to fix this issue. The identifier VDB-211961 was assigned to this vulnerability.

Affected

11 ranges
VendorProductVersion rangeFixed in
debiandebian_linux
debianlinux< linux 6.0.2-1 (bookworm)linux 6.0.2-1 (bookworm)
linuxkernel
linuxlinux_kernel>= 0 < 5.10.148-15.10.148-1
linuxlinux_kernel>= 0 < 6.0.2-16.0.2-1
linuxlinux_kernel>= 0 < 6.0.2-16.0.2-1
linuxlinux_kernel>= 0 < 6.0.2-16.0.2-1
linuxlinux_kernel>= 0 < 4.15.0-204.2154.15.0-204.215
linuxlinux_kernel>= 0 < 5.4.0-136.1535.4.0-136.153
linuxlinux_kernel>= 0 < 5.15.0-57.635.15.0-57.63
linuxlinux_kernel>= 0 < 4.4.0-239.2734.4.0-239.273

CVSS provenance

nvdv3.14.3MEDIUMCVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:U/C:N/I:N/A:L
osv8.8HIGH