cbcvebase.
CVE-2022-41974
published 2022-10-29

CVE-2022-41974: multipath-tools 0.7.0 through 0.9.x before 0.9.2 allows local users to obtain root access, as exploited alone or in conjunction with CVE-2022-41973. Local…

PriorityP342high7.8CVSS 3.1
AVLACLPRLUINSUCHIHAH
EPSS
0.61%
45.0th percentile
multipath-tools 0.7.0 through 0.9.x before 0.9.2 allows local users to obtain root access, as exploited alone or in conjunction with CVE-2022-41973. Local users able to write to UNIX domain sockets can bypass access controls and manipulate the multipath setup. This can lead to local privilege escalation to root. This occurs because an attacker can repeat a keyword, which is mishandled because arithmetic ADD is used instead of bitwise OR.

Affected

17 ranges
VendorProductVersion rangeFixed in
debiandebian_linux
debiandebian_linux
debianmultipath-tools< multipath-tools 0.9.4-1 (bookworm)multipath-tools 0.9.4-1 (bookworm)
fedoraprojectfedora
msrccbl2_device-mapper-multipath_0.8.6-4_on_cbl_mariner_2.0
msrccbl_mariner_2.0_arm
msrccbl_mariner_2.0_x64
msrccm1_device-mapper-multipath_0.8.6-1_on_cbl_mariner_1.0
opensvcmultipath-tools>= 0 < 0.8.5-2+deb11u10.8.5-2+deb11u1
opensvcmultipath-tools>= 0 < 0.9.4-10.9.4-1
opensvcmultipath-tools>= 0 < 0.9.4-10.9.4-1
opensvcmultipath-tools>= 0 < 0.9.4-10.9.4-1
opensvcmultipath-tools>= 0 < 0.7.4-2ubuntu3.20.7.4-2ubuntu3.2
opensvcmultipath-tools>= 0 < 0.8.3-1ubuntu2.10.8.3-1ubuntu2.1
opensvcmultipath-tools>= 0 < 0.8.8-1ubuntu1.22.04.10.8.8-1ubuntu1.22.04.1
opensvcmultipath-tools>= 0.7.0 < 0.9.20.9.2
opensvcmultipath-tools>= 0.7.7 < 0.9.20.9.2

CVSS provenance

nvdv3.17.8HIGHCVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H
osv7.8HIGH
vendor_debian7.8HIGH
vendor_msrc7.8HIGH
vendor_redhat7.8HIGH
vendor_ubuntu7.8HIGH
Stop checking back — get the weekly exploitation signal.

Every Monday: what got weaponized or added to CISA KEV in the last seven days — each CVE cross-linked to its PoC, Nuclei template, and detection rule. Free, one email a week, unsubscribe in one click.