PT-2022-2324 · Linux+10 · Linux Kernel+10

Marian Rehak

·

Published

2022-02-10

·

Updated

2025-02-10

·

CVE-2022-0435

CVSS v2.0

9.0

High

VectorAV:N/AC:L/Au:S/C:C/I:C/A:C
Name of the Vulnerable Software and Affected Versions Linux kernel versions prior to 5.16.9 Linux kernel versions prior to 5.15.23 Linux kernel versions prior to 5.10.100 Linux kernel versions prior to 5.4.179 Linux kernel versions prior to 4.19.229 Linux kernel versions prior to 4.14.266 Linux kernel versions prior to 4.9.301
Description The issue is related to a stack overflow flaw in the Linux kernel's TIPC protocol functionality. This flaw allows a remote user to crash the system or possibly escalate their privileges if they have access to the TIPC network. The vulnerability is caused by a lack of validation of the number of domain member nodes, which can lead to a buffer overflow. The vulnerability can be exploited by sending a specially crafted network packet with a high number of domain member nodes. The issue affects systems with the TIPC module loaded and the TIPC bearer enabled, which is typically used in clusters and not enabled by default in non-specialized Linux distributions.
Recommendations For Linux kernel versions prior to 5.16.9, update to version 5.16.9 or later. For Linux kernel versions prior to 5.15.23, update to version 5.15.23 or later. For Linux kernel versions prior to 5.10.100, update to version 5.10.100 or later. For Linux kernel versions prior to 5.4.179, update to version 5.4.179 or later. For Linux kernel versions prior to 4.19.229, update to version 4.19.229 or later. For Linux kernel versions prior to 4.14.266, update to version 4.14.266 or later. For Linux kernel versions prior to 4.9.301, update to version 4.9.301 or later. As a temporary workaround, consider disabling the TIPC module until a patch is available. Restrict access to the TIPC network to minimize the risk of exploitation. Avoid using the TIPC protocol until the issue is resolved.

Exploit

Fix

Memory Corruption

Found an issue in the description? Have something to add? Feel free to write us 👾

Weakness Enumeration

Related Identifiers

ALSA-2022:0825
ALT-PU-2022-1260
ALT-PU-2022-1262
ALT-PU-2022-1289
ALT-PU-2022-1295
ALT-PU-2022-1296
ALT-PU-2022-1297
ALT-PU-2022-1298
ALT-PU-2022-1300
ALT-PU-2022-1301
ALT-PU-2022-1370
ALT-PU-2022-1419
ALT-PU-2022-1421
ALT-PU-2022-1428
ALT-PU-2022-1432
ALT-PU-2022-1441
ALT-PU-2022-1456
ALT-PU-2022-1467
ALT-PU-2022-1540
ALT-PU-2022-2096
ALT-PU-2023-4894
AZL-9239
BDU:2022-02564
CESA-2022_0819
CESA-2022_0825
CESA-2022_0849
CVE-2022-0435
DLA-2940-1
DLA-2941-1
DSA-5092-1
DSA-5096-1
MGASA-2022-0062
MGASA-2022-0063
OESA-2022-1539
OPENSUSE-SU-2022:0363-1
OPENSUSE-SU-2022:0370-1
OPENSUSE-SU-2022_0363-1
OPENSUSE-SU-2022_0370-1
OPENSUSE-SU-2024_2362-1
RHSA-2022:0771
RHSA-2022:0772
RHSA-2022:0777
RHSA-2022:0819
RHSA-2022:0825
RHSA-2022:0841
RHSA-2022:0849
RHSA-2022:1186
RHSA-2022:1209
RHSA-2022:1213
RHSA-2022:1589
RHSA-2022:1619
RHSA-2022_0819
RHSA-2022_0825
RLSA-2022:0819
RLSA-2022:0825
SUSE-SU-2022:0363-1
SUSE-SU-2022:0364-1
SUSE-SU-2022:0365-1
SUSE-SU-2022:0367-1
SUSE-SU-2022:0370-1
SUSE-SU-2022:0371-1
SUSE-SU-2022:0372-1
SUSE-SU-2022:0418-1
SUSE-SU-2022:0429-1
SUSE-SU-2022:0436-1
SUSE-SU-2022:0463-1
SUSE-SU-2022:0555-1
SUSE-SU-2022_0429-1
SUSE-SU-2024:2360-1
SUSE-SU-2024:2362-1
SUSE-SU-2024:2365-1
SUSE-SU-2024:2561-1
USN-5302-1
USN-5337-1
USN-5338-1
USN-5339-1
USN-5362-1
USN-5368-1
USN-5377-1

Affected Products

Alt Linux
Almalinux
Astra Linux
Centos
Linuxmint
Linux Kernel
Red Hat
Red Os
Rocky Linux
Suse
Ubuntu