CVE-2022-1882
Summary
| CVE | CVE-2022-1882 |
| State | PUBLIC |
| Assigner | [email protected] |
| Source Priority | CVE Program / NVD first with legacy fallback |
| Published | 2022-05-26 17:15:00 UTC |
| Updated | 2023-11-07 03:42:00 UTC |
| Description | A use-after-free flaw was found in the Linux kernel’s pipes functionality in how a user performs manipulations with the pipe post_one_notification() after free_pipe_info() that is already called. This flaw allows a local user to crash or potentially escalate their privileges on the system. |
NVD Known Affected Configurations (CPE 2.3)
References
| Reference | Source | Link | Tags |
|---|
| [PATCH] fs/pipe: Deinitialize the watch_queue when pipe is freed |
MISC |
lore.kernel.org |
|
| [PATCH] fs/pipe: Deinitialize the watch_queue when pipe is freed |
|
lore.kernel.org |
|
| CVE-2022-1882 Linux Kernel Vulnerability in NetApp Products | NetApp Product Security |
CONFIRM |
security.netapp.com |
|
| 2089701 – (CVE-2022-1882) CVE-2022-1882 kernel: Use-After-Free in free_pipe_info() could cause an escalation of privileges |
MISC |
bugzilla.redhat.com |
|
| CVE Program record |
CVE.ORG |
www.cve.org |
canonical |
| NVD vulnerability detail |
NVD |
nvd.nist.gov |
canonical, analysis |
No vendor comments have been submitted for this CVE.
Legacy QID Mappings
- 160583 Oracle Enterprise Linux Security Update for kernel (ELSA-2023-2458)
- 180956 Debian Security Update for linux (CVE-2022-1882)
- 198979 Ubuntu Security Notification for Linux kernel Vulnerabilities (USN-5667-1)
- 198989 Ubuntu Security Notification for Linux kernel (IBM) Vulnerabilities (USN-5683-1)
- 199009 Ubuntu Security Notification for Linux kernel (Intel IoTG) Vulnerabilities (USN-5703-1)
- 241417 Red Hat Update for kernel security (RHSA-2023:2458)
- 241468 Red Hat Update for kernel-rt (RHSA-2023:2148)
- 752850 SUSE Enterprise Linux Security Update for the Linux Kernel (Live Patch 1 for SLE 15 SP4) (SUSE-SU-2022:4035-1)
- 752875 SUSE Enterprise Linux Security Update for the Linux Kernel (Live Patch 2 for SLE 15 SP4) (SUSE-SU-2022:4039-1)
- 752911 SUSE Enterprise Linux Security Update for the Linux Kernel (SUSE-SU-2022:3998-1)
- 752913 SUSE Enterprise Linux Security Update for the Linux Kernel (SUSE-SU-2022:4072-1)
- 752930 SUSE Enterprise Linux Security Update for the Linux Kernel (Live Patch 0 for SLE 15 SP4) (SUSE-SU-2022:4113-1)
- 753063 SUSE Enterprise Linux Security Update for the Linux Kernel (SUSE-SU-2022:4617-1)
- 902134 Common Base Linux Mariner (CBL-Mariner) Security Update for kernel (9841)
- 902139 Common Base Linux Mariner (CBL-Mariner) Security Update for kernel (9844)
- 902463 Common Base Linux Mariner (CBL-Mariner) Security Update for kernel (10120)
- 902465 Common Base Linux Mariner (CBL-Mariner) Security Update for kernel (10101)
- 902510 Common Base Linux Mariner (CBL-Mariner) Security Update for kernel (10118)
- 902517 Common Base Linux Mariner (CBL-Mariner) Security Update for kernel (10105)
- 904182 Common Base Linux Mariner (CBL-Mariner) Security Update for kernel (10118-1)
- 904270 Common Base Linux Mariner (CBL-Mariner) Security Update for kernel (10105-1)
- 905872 Common Base Linux Mariner (CBL-Mariner) Security Update for kernel (10118-2)
- 906491 Common Base Linux Mariner (CBL-Mariner) Security Update for kernel (10105-2)
- 941023 AlmaLinux Security Update for kernel (ALSA-2023:2458)
- 941061 AlmaLinux Security Update for kernel-rt (ALSA-2023:2148)