CVE-2022-2873
Summary
| CVE | CVE-2022-2873 |
| State | PUBLIC |
| Assigner | [email protected] |
| Source Priority | CVE Program / NVD first with legacy fallback |
| Published | 2022-08-22 15:15:00 UTC |
| Updated | 2023-11-07 03:47:00 UTC |
| Description | An out-of-bounds memory access flaw was found in the Linux kernel Intel’s iSMT SMBus host controller driver in the way a user triggers the I2C_SMBUS_BLOCK_DATA (with the ioctl I2C_SMBUS) with malicious input data. This flaw allows a local user to crash the system. |
NVD Known Affected Configurations (CPE 2.3)
References
| Reference | Source | Link | Tags |
|---|
| [SECURITY] [DLA 3349-1] linux-5.10 security update |
MLIST |
lists.debian.org |
|
| Debian -- Security Information -- DSA-5324-1 linux |
DEBIAN |
www.debian.org |
|
| [SECURITY] [DLA 3403-1] linux security update |
MLIST |
lists.debian.org |
|
| [PATCH] i2c: ismt: Fix an out-of-bounds bug in ismt_access() |
MISC |
lore.kernel.org |
|
| Linux Kernel 5.18 Vulnerabilities in NetApp Products | NetApp Product Security |
CONFIRM |
security.netapp.com |
|
| [PATCH] i2c: ismt: Fix an out-of-bounds bug in ismt_access() |
|
lore.kernel.org |
|
| CVE Program record |
CVE.ORG |
www.cve.org |
canonical |
| NVD vulnerability detail |
NVD |
nvd.nist.gov |
canonical, analysis |
No vendor comments have been submitted for this CVE.
Legacy QID Mappings
- 160476 Oracle Enterprise Linux Security Update for kernel (ELSA-2023-0832)
- 160490 Oracle Enterprise Linux Security Update for kernel (ELSA-2023-0951)
- 160500 Oracle Enterprise Linux Security Update for unbreakable enterprise kernel (ELSA-2023-12160)
- 160506 Oracle Enterprise Linux Security Update for unbreakable enterprise kernel (ELSA-2023-12199)
- 160508 Oracle Enterprise Linux Security Update for unbreakable enterprise kernel-container (ELSA-2023-12200)
- 160515 Oracle Enterprise Linux Security Update for unbreakable enterprise kernel-container (ELSA-2023-12207)
- 160516 Oracle Enterprise Linux Security Update for unbreakable enterprise kernel (ELSA-2023-12206)
- 181491 Debian Security Update for linux (DSA 5324-1)
- 181618 Debian Security Update for linux-5.10 (DLA 3349-1)
- 181768 Debian Security Update for linux (DLA 3403-1)
- 184450 Debian Security Update for linux (CVE-2022-2873)
- 198921 Ubuntu Security Notification for Linux kernel Vulnerabilities (USN-5594-1)
- 198927 Ubuntu Security Notification for Linux kernel (Oracle) Vulnerabilities (USN-5599-1)
- 198929 Ubuntu Security Notification for Linux kernel (Raspberry Pi) Vulnerabilities (USN-5602-1)
- 198942 Ubuntu Security Notification for Linux kernel (Intel IoTG) Vulnerabilities (USN-5616-1)
- 198950 Ubuntu Security Notification for Linux kernel (HWE) Vulnerabilities (USN-5623-1)
- 241204 Red Hat Update for kernel-rt (RHSA-2023:0854)
- 241209 Red Hat Update for kernel (RHSA-2023:0832)
- 241215 Red Hat Update for kernel-rt (RHSA-2023:0979)
- 241218 Red Hat Update for kernel (RHSA-2023:0951)
- 242151 Red Hat Update for kernel security (RHSA-2023:5627)
- 390273 Oracle VM Server for x86 Security Update for kernel (OVMSA-2023-0004)
- 672278 EulerOS Security Update for kernel (EulerOS-SA-2022-2686)
- 672286 EulerOS Security Update for kernel (EulerOS-SA-2022-2654)
- 672391 EulerOS Security Update for kernel (EulerOS-SA-2022-2767)
- 673117 EulerOS Security Update for kernel (EulerOS-SA-2023-2152)
- 752594 SUSE Enterprise Linux Security Update for the Linux Kernel (SUSE-SU-2022:3293-1)
- 753063 SUSE Enterprise Linux Security Update for the Linux Kernel (SUSE-SU-2022:4617-1)
- 753167 SUSE Enterprise Linux Security Update for the Linux Kernel (SUSE-SU-2022:3288-1)
- 902782 Common Base Linux Mariner (CBL-Mariner) Security Update for kernel (10624)
- 902785 Common Base Linux Mariner (CBL-Mariner) Security Update for kernel (10617)
- 904210 Common Base Linux Mariner (CBL-Mariner) Security Update for kernel (10624-1)
- 904240 Common Base Linux Mariner (CBL-Mariner) Security Update for kernel (10617-1)
- 906131 Common Base Linux Mariner (CBL-Mariner) Security Update for kernel (10624-2)
- 906439 Common Base Linux Mariner (CBL-Mariner) Security Update for kernel (10617-2)
- 940926 AlmaLinux Security Update for kernel (ALSA-2023:0832)
- 940936 AlmaLinux Security Update for kernel-rt (ALSA-2023:0854)
- 940942 AlmaLinux Security Update for kernel (ALSA-2023:0951)
- 940952 AlmaLinux Security Update for kernel-rt (ALSA-2023:0979)
- 960651 Rocky Linux Security Update for kernel (RLSA-2023:0832)
- 960656 Rocky Linux Security Update for kernel-rt (RLSA-2023:0854)
- 960667 Rocky Linux Security Update for kernel-rt (RLSA-2023:0979)