CVE-2022-34918
Summary
| CVE | CVE-2022-34918 |
| State | PUBLIC |
| Assigner | [email protected] |
| Source Priority | CVE Program / NVD first with legacy fallback |
| Published | 2022-07-04 21:15:00 UTC |
| Updated | 2023-11-07 03:48:00 UTC |
| Description | An issue was discovered in the Linux kernel through 5.18.9. A type confusion bug in nft_set_elem_init (leading to a buffer overflow) could be used by a local attacker to escalate privileges, a different vulnerability than CVE-2022-32250. (The attacker can obtain root access, but must start with an unprivileged user namespace to obtain CAP_NET_ADMIN access.) This can be fixed in nft_setelem_parse_data in net/netfilter/nf_tables_api.c. |
NVD Known Affected Configurations (CPE 2.3)
References
| Reference | Source | Link | Tags |
|---|
| kernel/git/netdev/net.git - Netdev Group's networking tree |
MISC |
git.kernel.org |
|
| Kernel Live Patch Security Notice LSN-0089-1 ≈ Packet Storm |
MISC |
packetstormsecurity.com |
|
| Netfilter nft_set_elem_init Heap Overflow Privilege Escalation ≈ Packet Storm |
MISC |
packetstormsecurity.com |
|
| oss-security - Re: Linux kernel: Netfilter heap buffer overflow in
nft_set_elem_init |
MLIST |
www.openwall.com |
|
| CVE-2022-34918 Linux Kernel Vulnerability in NetApp Products | NetApp Product Security |
CONFIRM |
security.netapp.com |
|
| oss-security - Re: Linux kernel: Netfilter heap buffer overflow in nft_set_elem_init |
MISC |
www.openwall.com |
|
| [vs] Netfilter vulnerability disclosure |
|
lore.kernel.org |
|
| [CVE-2022-34918] A crack in the Linux firewall |
MISC |
www.randorisec.fr |
|
| Debian -- Security Information -- DSA-5191-1 linux |
DEBIAN |
www.debian.org |
|
| [vs] Netfilter vulnerability disclosure |
MISC |
lore.kernel.org |
|
| oss-security - Re: Linux kernel: Netfilter heap buffer overflow in nft_set_elem_init |
MLIST |
www.openwall.com |
|
| CVE Program record |
CVE.ORG |
www.cve.org |
canonical |
| NVD vulnerability detail |
NVD |
nvd.nist.gov |
canonical, analysis |
No vendor comments have been submitted for this CVE.
Legacy QID Mappings
- 160106 Oracle Enterprise Linux Security Update for unbreakable enterprise kernel (ELSA-2022-9827)
- 160109 Oracle Enterprise Linux Security Update for unbreakable enterprise kernel-container (ELSA-2022-9830)
- 160110 Oracle Enterprise Linux Security Update for kernel (ELSA-2022-6610)
- 160776 Oracle Enterprise Linux Security Update for unbreakable enterprise kernel (ELSA-2023-12588)
- 160777 Oracle Enterprise Linux Security Update for unbreakable enterprise kernel-container (ELSA-2023-12590)
- 160778 Oracle Enterprise Linux Security Update for unbreakable enterprise kernel-container (ELSA-2023-12591)
- 160949 Oracle Enterprise Linux Security Update for unbreakable enterprise kernel (ELSA-2023-12842)
- 180900 Debian Security Update for linux (DSA 5191-1)
- 182626 Debian Security Update for linux (CVE-2022-34918)
- 198880 Ubuntu Security Notification for Linux kernel Vulnerabilities (USN-5544-1)
- 198881 Ubuntu Security Notification for Linux kernel (OEM) Vulnerability (USN-5545-1)
- 198891 Ubuntu Security Notification for Linux kernel Vulnerabilities (USN-5560-1)
- 198894 Ubuntu Security Notification for Linux kernel Vulnerabilities (USN-5566-1)
- 198895 Ubuntu Security Notification for Linux kernel Vulnerabilities (USN-5562-1)
- 198897 Ubuntu Security Notification for Linux kernel (Intel IoTG) Vulnerabilities (USN-5564-1)
- 198911 Ubuntu Security Notification for Linux kernel (Azure CVM) Vulnerabilities (USN-5582-1)
- 240677 Red Hat Update for kpatch-patch (RHSA-2022:6592)
- 240680 Red Hat Update for kernel security (RHSA-2022:6610)
- 240682 Red Hat Update for kernel-rt (RHSA-2022:6582)
- 282922 Fedora Security Update for kernel (FEDORA-2022-d280d3b05d)
- 282923 Fedora Security Update for kernel (FEDORA-2022-b47003a52b)
- 354011 Amazon Linux Security Advisory for kernel-livepatch : ALAS2LIVEPATCH-2022-089
- 354014 Amazon Linux Security Advisory for kernel-livepatch : ALAS2LIVEPATCH-2022-087
- 354016 Amazon Linux Security Advisory for kernel : ALAS2KERNEL-5.10-2022-018
- 354020 Amazon Linux Security Advisory for kernel : ALAS2KERNEL-5.15-2022-005
- 354027 Amazon Linux Security Advisory for kernel-livepatch : ALAS2LIVEPATCH-2022-090
- 354028 Amazon Linux Security Advisory for kernel-livepatch : ALAS2LIVEPATCH-2022-088
- 354049 Amazon Linux Security Advisory for kernel : ALAS2KERNEL-5.4-2022-034
- 354270 Amazon Linux Security Advisory for kernel : ALAS2022-2022-114
- 354468 Amazon Linux Security Advisory for kernel : ALAS2022-2022-185
- 354542 Amazon Linux Security Advisory for kernel : ALAS-2022-185
- 355199 Amazon Linux Security Advisory for kernel : ALAS2023-2023-070
- 355545 Amazon Linux Security Advisory for kernel : ALAS2-2023-2100
- 355557 Amazon Linux Security Advisory for kernel : ALAS-2023-1773
- 377117 Alibaba Cloud Linux Security Update for cloud-kernel (ALINUX3-SA-2022:0158)
- 390290 Oracle Managed Virtualization (VM) Server for x86 Security Update for kernel (OVMSA-2023-0023)
- 6140381 AWS Bottlerocket Security Update for kernel (GHSA-89wg-9m7j-mxmm)
- 672086 EulerOS Security Update for kernel (EulerOS-SA-2022-2321)
- 672114 EulerOS Security Update for kernel (EulerOS-SA-2022-2292)
- 672139 EulerOS Security Update for kernel (EulerOS-SA-2022-2428)
- 672141 EulerOS Security Update for kernel (EulerOS-SA-2022-2441)
- 672158 EulerOS Security Update for kernel (EulerOS-SA-2022-2415)
- 672205 EulerOS Security Update for kernel (EulerOS-SA-2022-2466)
- 672218 EulerOS Security Update for kernel (EulerOS-SA-2022-2619)
- 752364 SUSE Enterprise Linux Security Update for the Linux Kernel (SUSE-SU-2022:2422-1)
- 752370 SUSE Enterprise Linux Security Update for the Linux Kernel (SUSE-SU-2022:2520-1)
- 752391 SUSE Enterprise Linux Security Update for the Linux Kernel (SUSE-SU-2022:2549-1)
- 753148 SUSE Enterprise Linux Security Update for the Linux Kernel (SUSE-SU-2022:2615-1)
- 753184 SUSE Enterprise Linux Security Update for the Linux Kernel (Live Patch 11 for SLE 15 SP3) (SUSE-SU-2022:2738-1)
- 753216 SUSE Enterprise Linux Security Update for the Linux Kernel (Live Patch 16 for SLE 15 SP3) (SUSE-SU-2022:2727-1)
- 753219 SUSE Enterprise Linux Security Update for the Linux Kernel (Live Patch 14 for SLE 15 SP3) (SUSE-SU-2022:2726-1)
- 753271 SUSE Enterprise Linux Security Update for the Linux Kernel (SUSE-SU-2022:2424-1)
- 753294 SUSE Enterprise Linux Security Update for the Linux Kernel (Live Patch 19 for SLE 15 SP3) (SUSE-SU-2022:2696-1)
- 753315 SUSE Enterprise Linux Security Update for the Linux Kernel (Live Patch 18 for SLE 15 SP3) (SUSE-SU-2022:2759-1)
- 753319 SUSE Enterprise Linux Security Update for the Linux Kernel (Live Patch 7 for SLE 15 SP3) (SUSE-SU-2022:2766-1)
- 753362 SUSE Enterprise Linux Security Update for the Linux Kernel (SUSE-SU-2022:2376-1)
- 753481 SUSE Enterprise Linux Security Update for the Linux Kernel (Live Patch 9 for SLE 15 SP3) (SUSE-SU-2022:2770-1)
- 753489 SUSE Enterprise Linux Security Update for the Linux Kernel (Live Patch 17 for SLE 15 SP3) (SUSE-SU-2022:2732-1)
- 753491 SUSE Enterprise Linux Security Update for the Linux Kernel (Live Patch 0 for SLE 15 SP4) (SUSE-SU-2022:2854-1)
- 902451 Common Base Linux Mariner (CBL-Mariner) Security Update for kernel (10078)
- 902453 Common Base Linux Mariner (CBL-Mariner) Security Update for kernel (10075)
- 902643 Common Base Linux Mariner (CBL-Mariner) Security Update for kernel (10075-1)
- 902678 Common Base Linux Mariner (CBL-Mariner) Security Update for kernel (10078-1)
- 906135 Common Base Linux Mariner (CBL-Mariner) Security Update for kernel (10078-2)
- 906458 Common Base Linux Mariner (CBL-Mariner) Security Update for kernel (10075-2)
- 940681 AlmaLinux Security Update for kernel (ALSA-2022:6610)
- 940697 AlmaLinux Security Update for kernel-rt (ALSA-2022:6582)