imPC@ndo IT

Tracker / CVE-2022-1729

CVE-2022-1729

High 7.0

A race condition was found the Linux kernel in perf_event_open() which can be exploited by an unprivileged user to gain root privileges. The bug allows to build several exploit primitives such as kernel address information leak, arbitrary execution, etc.

Affected products and versions

linux linux_kernel · 3.16.40 → 3.17
linux linux_kernel · 3.18.54 → 3.19
linux linux_kernel · 3.2.85 → 3.3
linux linux_kernel · 4.0.0 → 4.9.316
linux linux_kernel · 4.10 → 4.14.281
linux linux_kernel · 4.15 → 4.19.245
linux linux_kernel · 4.20 → 5.4.196
linux linux_kernel · 5.11 → 5.15.42
linux linux_kernel · 5.16 → 5.17.10
linux linux_kernel · 5.5.0 → 5.10.118
netapp hci_baseboard_management_controller

Analysis

This page is not indexable yet.Until it carries original analysis — what it actually exposes, how to check in two minutes whether a system was touched, what to do if it was — the page stays noindex. The database decides that, not the template.

References