CVE-2022-0617

CVSS v3.1 5.5 (Medium)
55% Progress
CVSS v2.0 4.9 (Medium)
49% Progress
EPSS 0.04 % (5th)
0.04% Progress
Affected Products 2
Advisories 43

A flaw null pointer dereference in the Linux kernel UDF file system functionality was found in the way user triggers udf_file_write_iter function for the malicious UDF image. A local user could use this flaw to crash the system. Actual from Linux kernel 4.2-rc1 till 5.17-rc2.

Weaknesses
CWE-476
NULL Pointer Dereference
CVE Status
PUBLISHED
CNA
Red Hat, Inc.
Published Date
2022-02-16 17:15:11
(2 years ago)
Updated Date
2023-11-07 03:41:26
(10 months ago)

Affected Products

Loading...
Loading...

Configuration #1

    CPE23 From Up To
  Linux Kernel from 4.2.1 version and prior 5.17 version cpe:2.3:o:linux:linux_kernel >= 4.2.1 < 5.17
  Linux Kernel 4.2 Rc1 cpe:2.3:o:linux:linux_kernel:4.2:rc1
  Linux Kernel 4.2 Rc2 cpe:2.3:o:linux:linux_kernel:4.2:rc2
  Linux Kernel 4.2 Rc3 cpe:2.3:o:linux:linux_kernel:4.2:rc3
  Linux Kernel 4.2 Rc4 cpe:2.3:o:linux:linux_kernel:4.2:rc4
  Linux Kernel 4.2 Rc5 cpe:2.3:o:linux:linux_kernel:4.2:rc5
  Linux Kernel 4.2 Rc6 cpe:2.3:o:linux:linux_kernel:4.2:rc6
  Linux Kernel 4.2 Rc7 cpe:2.3:o:linux:linux_kernel:4.2:rc7
  Linux Kernel 4.2 Rc8 cpe:2.3:o:linux:linux_kernel:4.2:rc8
  Linux Kernel 4.2.0 cpe:2.3:o:linux:linux_kernel:4.2.0
  Linux Kernel 5.17 cpe:2.3:o:linux:linux_kernel:5.17:-
  Linux Kernel 5.17 Rc1 cpe:2.3:o:linux:linux_kernel:5.17:rc1
  Linux Kernel 5.17 Rc2 cpe:2.3:o:linux:linux_kernel:5.17:rc2

Configuration #2

    CPE23 From Up To
  Debian Linux 9.0 cpe:2.3:o:debian:debian_linux:9.0
  Debian Linux 10.0 cpe:2.3:o:debian:debian_linux:10.0
  Debian Linux 11.0 cpe:2.3:o:debian:debian_linux:11.0
Loading...
Loading...
Loading...
Loading...
Loading...
Loading...
Loading...
Loading...
Loading...