PT-2022-1641 · Linux+9 · Linux Kernel+9

Butt3Rflyh4Ck

·

Published

2022-01-24

·

Updated

2023-08-14

·

CVE-2022-0617

CVSS v3.1

5.5

Medium

VectorAV:L/AC:L/PR:L/UI:N/S:U/C:N/I:N/A:H
Name of the Vulnerable Software and Affected Versions Linux kernel versions 4.2-rc1 through 5.17-rc2
Description The issue is related to a null pointer dereference in the Linux kernel's UDF file system functionality. This can be triggered by a local user through the udf file write iter function with a malicious UDF image, potentially allowing an attacker to crash the system.
Recommendations For Linux kernel versions 4.2-rc1 through 5.17-rc2, consider disabling the UDF file system functionality as a temporary workaround until a patch is available. Restrict access to the udf file write iter function to minimize the risk of exploitation. At the moment, there is no information about a newer version that contains a fix for this vulnerability.

Exploit

NULL Pointer Dereference

Found an issue in the description? Have something to add? Feel free to write us 👾

Weakness Enumeration

Related Identifiers

ALSA-2022:7444
ALSA-2022:7683
ALSA-2022:7933
ALSA-2022:8267
ALT-PU-2022-1647
ALT-PU-2022-1730
ALT-PU-2022-1768
ALT-PU-2022-1846
ALT-PU-2022-2155
ALT-PU-2023-1684
ALT-PU-2023-1741
ALT-PU-2023-1814
ALT-PU-2023-4894
AZL-8801
BDU:2022-00889
CESA-2022_7444
CESA-2022_7683
CVE-2022-0617
DLA-2940-1
DLA-2941-1
DSA-5095-1
DSA-5096-1
OESA-2022-1559
OPENSUSE-SU-2022:0768-1
OPENSUSE-SU-2022:1037-1
OPENSUSE-SU-2022:1039-1
OPENSUSE-SU-2022_0768-1
OPENSUSE-SU-2022_1037-1
OPENSUSE-SU-2022_1039-1
OPENSUSE-SU-2022_2520-1
OPENSUSE-SU-2022_2615-1
RHSA-2022:7444
RHSA-2022:7683
RHSA-2022:7933
RHSA-2022:8267
RHSA-2022_7444
RHSA-2022_7683
RHSA-2022_7933
RHSA-2022_8267
RHSA-2024:0724
RLSA-2022:7444
RLSA-2022:7683
SUSE-SU-2022:0756-1
SUSE-SU-2022:0757-1
SUSE-SU-2022:0759-1
SUSE-SU-2022:0761-1
SUSE-SU-2022:0762-1
SUSE-SU-2022:0765-1
SUSE-SU-2022:0766-1
SUSE-SU-2022:0767-1
SUSE-SU-2022:0768-1
SUSE-SU-2022:1037-1
SUSE-SU-2022:1038-1
SUSE-SU-2022:1039-1
SUSE-SU-2022:1257-1
SUSE-SU-2022:14905-1
SUSE-SU-2022:2520-1
SUSE-SU-2022:2615-1
SUSE-SU-2022_14905-1
USN-5383-1
USN-5384-1
USN-5385-1
USN-6001-1
USN-6013-1
USN-6014-1

Affected Products

Alt Linux
Almalinux
Astra Linux
Centos
Linuxmint
Linux Kernel
Red Hat
Rocky Linux
Suse
Ubuntu