CVE-2021-22600

CVSS v3.1 7 (High)
70% Progress
CVSS v2.0 7.2 (High)
72% Progress
EPSS 0.07 % (30th)
0.07% Progress
Affected Products 12
Advisories 22

A double free bug in packet_set_ring() in net/packet/af_packet.c can be exploited by a local user through crafted syscalls to escalate privileges or deny service. We recommend upgrading kernel past the effected versions or rebuilding past ec6af094ea28f0f2dda1a6a33b14cd57e36a9755

Weaknesses
CWE-415
Double Free
CVE Status
PUBLISHED
CNA
Google Inc.
Published Date
2022-01-26 14:15:08
(2 years ago)
Updated Date
2023-06-26 18:59:36
(14 months ago)
Linux Kernel Privilege Escalation Vulnerability (CISA - Known Exploited Vulnerabilities Catalog)
Description
Linux Kernel contains a flaw in the packet socket (AF_PACKET) implementation which could lead to incorrectly freeing memory. A local user could exploit this for denial-of-service (DoS) or possibly for privilege escalation.
Required Action
Apply updates per vendor instructions.
Known to be Used in Ransomware Campaigns
Unknown
Notes
https://nvd.nist.gov/vuln/detail/CVE-2021-22600
Vendor
Linux
Product
Kernel
In CISA Catalog from
2022-04-11
(2 years ago)
Due Date
2022-05-02
(2 years ago)

Affected Products

Loading...
Loading...

Configuration #1

AND
    CPE23 From Up To
OR  
  Linux Kernel from 4.14.175 version and prior 4.14.259 version cpe:2.3:o:linux:linux_kernel >= 4.14.175 < 4.14.259
OR  
  Running on/with
  Linux Kernel from 4.19.114 version and prior 4.19.222 version cpe:2.3:o:linux:linux_kernel >= 4.19.114 < 4.19.222
OR  
  Running on/with
  Linux Kernel from 5.4.29 version and prior 5.4.168 version cpe:2.3:o:linux:linux_kernel >= 5.4.29 < 5.4.168
OR  
  Running on/with
  Linux Kernel from 5.5.14 version and prior 5.10.88 version cpe:2.3:o:linux:linux_kernel >= 5.5.14 < 5.10.88
OR  
  Running on/with
  Linux Kernel from 5.11 version and prior 5.15.11 version cpe:2.3:o:linux:linux_kernel >= 5.11 < 5.15.11

Configuration #2

AND
    CPE23 From Up To
OR  
  Debian Linux 9.0 cpe:2.3:o:debian:debian_linux:9.0
OR  
  Running on/with
  Debian Linux 10.0 cpe:2.3:o:debian:debian_linux:10.0

Configuration #3

AND
    CPE23 From Up To
OR  
  Netapp H410c Firmware cpe:2.3:o:netapp:h410c_firmware:-
OR  
  Running on/with
  Netapp H410c cpe:2.3:h:netapp:h410c:-

Configuration #4

AND
    CPE23 From Up To
OR  
  Netapp H300s Firmware cpe:2.3:o:netapp:h300s_firmware:-
OR  
  Running on/with
  Netapp H300s cpe:2.3:h:netapp:h300s:-

Configuration #5

AND
    CPE23 From Up To
OR  
  Netapp H500s Firmware cpe:2.3:o:netapp:h500s_firmware:-
OR  
  Running on/with
  Netapp H500s cpe:2.3:h:netapp:h500s:-

Configuration #6

AND
    CPE23 From Up To
OR  
  Netapp H700s Firmware cpe:2.3:o:netapp:h700s_firmware:-
OR  
  Running on/with
  Netapp H700s cpe:2.3:h:netapp:h700s:-

Configuration #7

AND
    CPE23 From Up To
OR  
  Netapp H410s Firmware cpe:2.3:o:netapp:h410s_firmware:-
OR  
  Running on/with
  Netapp H410s cpe:2.3:h:netapp:h410s:-
Loading...
Loading...
Loading...
Loading...
Loading...
Loading...
Loading...
Loading...
Loading...