CVE-2022-0617
Published Feb 16, 2022
Last updated a year ago
Overview
- Description
- A flaw null pointer dereference in the Linux kernel UDF file system functionality was found in the way user triggers udf_file_write_iter function for the malicious UDF image. A local user could use this flaw to crash the system. Actual from Linux kernel 4.2-rc1 till 5.17-rc2.
- Source
- secalert@redhat.com
- NVD status
- Modified
Social media
- Hype score
- Not currently trending
Risk scores
CVSS 3.1
- Type
- Primary
- Base score
- 5.5
- Impact score
- 3.6
- Exploitability score
- 1.8
- Vector string
- CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:N/I:N/A:H
- Severity
- MEDIUM
CVSS 2.0
- Type
- Primary
- Base score
- 4.9
- Impact score
- 6.9
- Exploitability score
- 3.9
- Vector string
- AV:L/AC:L/Au:N/C:N/I:N/A:C
Configurations
[ { "nodes": [ { "negate": false, "cpeMatch": [ { "criteria": "cpe:2.3:o:linux:linux_kernel:*:*:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "1C57B5C5-36B7-467B-A381-0F4EA21251AC", "versionEndExcluding": "5.17", "versionStartIncluding": "4.2.1" }, { "criteria": "cpe:2.3:o:linux:linux_kernel:4.2:rc1:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "8AFE7ED9-FADE-4E73-90F6-CE7509701284" }, { "criteria": "cpe:2.3:o:linux:linux_kernel:4.2:rc2:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "58FB19F0-507A-4281-844F-F3DC99E34AEB" }, { "criteria": "cpe:2.3:o:linux:linux_kernel:4.2:rc3:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "1EC64B1B-3E04-4F49-B887-9C6B02EE7C87" }, { "criteria": "cpe:2.3:o:linux:linux_kernel:4.2:rc4:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "8C5DADE2-2A31-4F65-8A7E-224C02958A81" }, { "criteria": "cpe:2.3:o:linux:linux_kernel:4.2:rc5:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "130E1C2A-45DE-4C16-8FFA-06E9C9F7F175" }, { "criteria": "cpe:2.3:o:linux:linux_kernel:4.2:rc6:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "78F0CC21-E28A-4B83-B65B-94AB9242F345" }, { "criteria": "cpe:2.3:o:linux:linux_kernel:4.2:rc7:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "AED16DC6-6364-4B57-92A1-F14F347DADF7" }, { "criteria": "cpe:2.3:o:linux:linux_kernel:4.2:rc8:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "03A4BCF1-5A7D-4E74-948F-134F0E57D73B" }, { "criteria": "cpe:2.3:o:linux:linux_kernel:4.2.0:*:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "DB0A8C29-A79E-4418-AD91-D2730F5CBBFD" }, { "criteria": "cpe:2.3:o:linux:linux_kernel:5.17:-:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "A59F7FD3-F505-48BD-8875-F07A33F42F6C" }, { "criteria": "cpe:2.3:o:linux:linux_kernel:5.17:rc1:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "7BD5F8D9-54FA-4CB0-B4F0-CB0471FDDB2D" }, { "criteria": "cpe:2.3:o:linux:linux_kernel:5.17:rc2:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "E6E34B23-78B4-4516-9BD8-61B33F4AC49A" } ], "operator": "OR" } ] }, { "nodes": [ { "negate": false, "cpeMatch": [ { "criteria": "cpe:2.3:o:debian:debian_linux:9.0:*:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "DEECE5FC-CACF-4496-A3E7-164736409252" }, { "criteria": "cpe:2.3:o:debian:debian_linux:10.0:*:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "07B237A9-69A3-4A9C-9DA0-4E06BD37AE73" }, { "criteria": "cpe:2.3:o:debian:debian_linux:11.0:*:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "FA6FEEC2-9F11-4643-8827-749718254FED" } ], "operator": "OR" } ] } ]