PT-2022-7363 · Linux+4 · Linux Kernel+4

Published

2022-10-12

·

Updated

2023-05-16

·

CVE-2022-3522

CVSS v3.1

7.0

High

VectorAV:L/AC:H/PR:L/UI:N/S:U/C:H/I:H/A:H
Name of the Vulnerable Software and Affected Versions Linux Kernel (affected versions not specified)
Description The issue is related to a race condition in the hugetlb no page() function of the mm/hugetlb.c module in the Linux kernel's memory management subsystem. This could allow an attacker to impact the confidentiality, integrity, and availability of protected information or elevate their privileges.
Recommendations At the moment, there is no information about a newer version that contains a fix for this vulnerability.

Race Condition

Found an issue in the description? Have something to add? Feel free to write us 👾

Weakness Enumeration

Related Identifiers

ALSA-2023:2148
ALSA-2023:2458
ALSA-2023:2736
ALSA-2023:2951
ALT-PU-2023-1235
BDU:2024-04164
CESA-2023_2736
CESA-2023_2951
CVE-2022-3522
RHSA-2023:2148
RHSA-2023:2458
RHSA-2023:2736
RHSA-2023:2951
RHSA-2023_2148
RHSA-2023_2458
RHSA-2023_2736
RHSA-2023_2951
RHSA-2024:0412

Affected Products

Alt Linux
Almalinux
Centos
Linux Kernel
Red Hat