imPC@ndo IT

Tracker / CVE-2022-3649

CVE-2022-3649

Low 3.1

A vulnerability was found in Linux Kernel. It has been classified as problematic. Affected is the function nilfs_new_inode of the file fs/nilfs2/inode.c of the component BPF. The manipulation leads to use after free. It is possible to launch the attack remotely. It is recommended to apply a patch to fix this issue. The identifier of this vulnerability is VDB-211992.

Affected products and versions

debian debian_linux
linux linux_kernel · … → 4.9.331
linux linux_kernel · 4.10 → 4.14.296
linux linux_kernel · 4.15 → 4.19.262
linux linux_kernel · 4.20 → 5.4.220
linux linux_kernel · 5.11 → 5.15.74
linux linux_kernel · 5.16 → 5.19.16
linux linux_kernel · 5.5 → 5.10.148
linux linux_kernel · 6.0 → 6.0.2
netapp active_iq_unified_manager
netapp h300s_firmware
netapp h410s_firmware
netapp h500s_firmware
netapp h700s_firmware

Analysis

This page is not indexable yet.Until it carries original analysis — what it actually exposes, how to check in two minutes whether a system was touched, what to do if it was — the page stays noindex. The database decides that, not the template.

References