cbcvebase.
CVE-2022-41973
published 2022-10-29

CVE-2022-41973: multipath-tools 0.7.7 through 0.9.x before 0.9.2 allows local users to obtain root access, as exploited in conjunction with CVE-2022-41974. Local users able to…

PriorityP339high7.8CVSS 3.1
AVLACLPRLUINSUCHIHAH
EPSS
0.66%
47.4th percentile
multipath-tools 0.7.7 through 0.9.x before 0.9.2 allows local users to obtain root access, as exploited in conjunction with CVE-2022-41974. Local users able to access /dev/shm can change symlinks in multipathd due to incorrect symlink handling, which could lead to controlled file writes outside of the /dev/shm directory. This could be used indirectly for local privilege escalation to root.

Affected

19 ranges
VendorProductVersion rangeFixed in
debiandebian_linux
debiandebian_linux
debianmultipath-tools< multipath-tools 0.9.4-1 (bookworm)multipath-tools 0.9.4-1 (bookworm)
fedoraprojectfedora
msrccbl2_device-mapper-multipath_0.8.6-4_on_cbl_mariner_2.0
msrccbl_mariner_2.0_arm
msrccbl_mariner_2.0_x64
msrccm1_device-mapper-multipath_0.8.6-1_on_cbl_mariner_1.0
opensvcmultipath-tools>= 0 < 0.8.5-2+deb11u10.8.5-2+deb11u1
opensvcmultipath-tools>= 0 < 0.9.4-10.9.4-1
opensvcmultipath-tools>= 0 < 0.9.4-10.9.4-1
opensvcmultipath-tools>= 0 < 0.9.4-10.9.4-1
opensvcmultipath-tools>= 0 < 0.7.4-2ubuntu3.20.7.4-2ubuntu3.2
opensvcmultipath-tools>= 0 < 0.8.3-1ubuntu2.10.8.3-1ubuntu2.1
opensvcmultipath-tools>= 0 < 0.8.8-1ubuntu1.22.04.10.8.8-1ubuntu1.22.04.1
opensvcmultipath-tools>= 0.7.0 < 0.9.20.9.2
opensvcmultipath-tools>= 0.7.7 < 0.9.20.9.2
redhatenterprise_linux
redhatenterprise_linux

CVSS provenance

nvdv3.17.8HIGHCVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H
osv7.8HIGH
vendor_debian7.8HIGH
vendor_msrc7.8HIGH
vendor_redhat7.8HIGH
vendor_ubuntu7.8HIGH
vendor_oracle6.5MEDIUM
Stop checking back — get the weekly exploitation signal.

Every Monday: what got weaponized or added to CISA KEV in the last seven days — each CVE cross-linked to its PoC, Nuclei template, and detection rule. Free, one email a week, unsubscribe in one click.