PT-2022-5355 · Unknown+10 · Multipath-Tools+10

Alexander Bergmann

·

Published

2022-10-24

·

Updated

2024-11-12

·

CVE-2022-41974

CVSS v3.1

7.8

High

VectorAV:L/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H
Name of the Vulnerable Software and Affected Versions multipath-tools versions 0.7.0 through 0.9.x before 0.9.2 multipath-tools versions prior to 0.9.2
Description The issue is related to errors in privilege management, allowing an attacker to elevate their privileges to root. Local users who can write to UNIX domain sockets can bypass access controls and manipulate the multipath setup, leading to local privilege escalation. This occurs because an attacker can repeat a keyword, which is mishandled due to the use of arithmetic ADD instead of bitwise OR.
Recommendations For multipath-tools versions 0.7.0 through 0.9.x before 0.9.2, update to version 0.9.2 or later to resolve the issue. For multipath-tools versions prior to 0.9.2, update to version 0.9.2 or later to resolve the issue. As a temporary workaround, consider restricting access to UNIX domain sockets to minimize the risk of exploitation.

Exploit

Fix

LPE

Improper Privilege Management

Found an issue in the description? Have something to add? Feel free to write us 👾

Weakness Enumeration

Related Identifiers

ALSA-2022:7185
ALSA-2022:7192
ALSA-2022:7928
ALSA-2022:8453
ALT-PU-2022-3217
ALT-PU-2022-3391
ALT-PU-2022-3392
ALT-PU-2023-1102
AZL-11373
BDU:2022-06669
CESA-2022_7186
CESA-2022_7192
CVE-2022-41974
DLA-3250-1
DSA-5366-1
MGASA-2024-0071
OESA-2022-2050
OPENSUSE-SU-2022_3710-1
OPENSUSE-SU-2022_3711-1
OPENSUSE-SU-2022_3712-1
RHSA-2022:7185
RHSA-2022:7186
RHSA-2022:7187
RHSA-2022:7188
RHSA-2022:7191
RHSA-2022:7192
RHSA-2022:8598
RHSA-2022_7185
RHSA-2022_7186
RHSA-2022_7192
RLSA-2022:7185
RLSA-2022:7192
ROSA-SA-2023-2218
ROSA-SA-2024-2521
SUSE-SU-2022:3707-1
SUSE-SU-2022:3708-1
SUSE-SU-2022:3709-1
SUSE-SU-2022:3710-1
SUSE-SU-2022:3711-1
SUSE-SU-2022:3712-1
SUSE-SU-2022:3713-1
SUSE-SU-2022:3714-1
SUSE-SU-2022:3715-1
SUSE-SU-2022_3712-1
SUSE-SU-2022_3713-1
SUSE-SU-2022_3714-1
SUSE-SU-2022_3715-1
USN-5731-1

Affected Products

Alt Linux
Almalinux
Astra Linux
Centos
Linuxmint
Red Hat
Red Os
Rocky Linux
Suse
Ubuntu
Multipath-Tools