Headline
CVE-2022-0995: kernel bug in the watch_queue subsystem
An out-of-bounds (OOB) memory write flaw was found in the Linux kernel’s watch_queue event notification subsystem. This flaw can overwrite parts of the kernel state, potentially allowing a local user to gain privileged access or cause a denial of service on the system.
Keywords:
Status:
NEW
Alias:
CVE-2022-0995
Product:
Security Response
Classification:
Other
Component:
vulnerability
Sub Component:
Version:
unspecified
Hardware:
All
OS:
Linux
Priority:
high
Severity:
high
Target Milestone:
—
Assignee:
Red Hat Product Security
QA Contact:
Docs Contact:
URL:
Whiteboard:
Depends On:
2063758 2064547 2064548 2064545 2064546 2064549
Blocks:
2063781 2064720
TreeView+
depends on / blocked
Reported:
2022-03-14 11:43 UTC by Sandipan Roy
Modified:
2022-03-23 11:51 UTC (History)
CC List:
49 users (show)
Fixed In Version:
kernel 5.17 rc8
Doc Type:
If docs needed, set a value
Doc Text:
An out-of-bounds (OOB) memory write flaw was found in the Linux kernel’s watch_queue event notification subsystem. This flaw can overwrite parts of the kernel state, potentially allowing a local user to gain privileged access or cause a denial of service on the system.
Clone Of:
Environment:
Last Closed: