Linux Kernel could allow a local attacker to execute arbitrary code on the system, caused by a concurrency use-after-free flaw in the bad_flp_intr function. By executing a specially-crafted program, an attacker could exploit this vulnerability to execute arbitrary code or cause a denial of service condition on the system.
References
| Link | Resource |
|---|---|
| https://francozappa.github.io/about-bias/ | Not Applicable |
| https://kb.cert.org/vuls/id/647177/ | Not Applicable |
| https://bugzilla.redhat.com/show_bug.cgi?id=1832397 | Not Applicable |
| https://www.debian.org/security/2022/dsa-5173 | |
| https://security.netapp.com/advisory/ntap-20220722-0002/ |
Information
Published : 2022-06-02 14:15
Updated : 2022-07-22 19:15
NVD link : CVE-2022-1652
Mitre link : CVE-2022-1652
JSON object : View
Products Affected
redhat
- enterprise_linux
linux
- linux_kernel
CWE
CWE-416
Use After Free
