{"api_version":"1","generated_at":"2026-07-23T13:23:15+00:00","cve":"CVE-2022-1117","urls":{"html":"https://cve.report/CVE-2022-1117","api":"https://cve.report/api/cve/CVE-2022-1117.json","docs":"https://cve.report/api","cve_org":"https://www.cve.org/CVERecord?id=CVE-2022-1117","nvd":"https://nvd.nist.gov/vuln/detail/CVE-2022-1117"},"summary":{"title":"CVE-2022-1117","description":"A vulnerability was found in fapolicyd. The vulnerability occurs due to an assumption on how glibc names the runtime linker, a build time regular expression may not correctly detect the runtime linker. The consequence is that the pattern detection for applications launched by the run time linker may fail to detect the pattern and allow execution.","state":"PUBLIC","assigner":"secalert@redhat.com","published_at":"2022-08-29 15:15:00","updated_at":"2023-02-12 22:15:00"},"problem_types":["CWE-552"],"metrics":[],"references":[{"url":"https://access.redhat.com/errata/RHSA-2022:4824","name":"https://access.redhat.com/errata/RHSA-2022:4824","refsource":"MISC","tags":[],"title":"Red Hat Customer Portal - Access to 24x7 support and knowledge","mime":"text/html","httpstatus":"200","archivestatus":"200"},{"url":"https://github.com/linux-application-whitelisting/fapolicyd/commit/38a942613f93824c53164730b2b7a2f75b8cd263","name":"https://github.com/linux-application-whitelisting/fapolicyd/commit/38a942613f93824c53164730b2b7a2f75b8cd263","refsource":"MISC","tags":[],"title":"Fix for CVE-2022-1117 · linux-application-whitelisting/fapolicyd@38a9426 · GitHub","mime":"text/html","httpstatus":"200","archivestatus":"404"},{"url":"https://access.redhat.com/security/cve/CVE-2022-1117","name":"https://access.redhat.com/security/cve/CVE-2022-1117","refsource":"MISC","tags":[],"title":"Red Hat Customer Portal - Access to 24x7 support and knowledge","mime":"text/html","httpstatus":"200","archivestatus":"404"},{"url":"https://bugzilla.redhat.com/show_bug.cgi?id=2066904","name":"https://bugzilla.redhat.com/show_bug.cgi?id=2066904","refsource":"MISC","tags":[],"title":"Bug Access Denied","mime":"text/html","httpstatus":"200","archivestatus":"404"},{"url":"https://access.redhat.com/errata/RHSA-2022:1898","name":"https://access.redhat.com/errata/RHSA-2022:1898","refsource":"MISC","tags":[],"title":"Red Hat Customer Portal - Access to 24x7 support and knowledge","mime":"text/html","httpstatus":"200","archivestatus":"200"},{"url":"https://bugzilla.redhat.com/show_bug.cgi?id=2068171","name":"https://bugzilla.redhat.com/show_bug.cgi?id=2068171","refsource":"MISC","tags":[],"title":"2068171 – (CVE-2022-1117) CVE-2022-1117 fapolicyd: fapolicyd wrongly prepares ld.so path","mime":"text/html","httpstatus":"200","archivestatus":"404"},{"url":"https://www.cve.org/CVERecord?id=CVE-2022-1117","name":"CVE Program record","refsource":"CVE.ORG","tags":["canonical"]},{"url":"https://nvd.nist.gov/vuln/detail/CVE-2022-1117","name":"NVD vulnerability detail","refsource":"NVD","tags":["canonical","analysis"]}],"affected":[],"timeline":[],"solutions":[],"workarounds":[],"exploits":[],"credits":[],"nvd_cpes":[{"cve_year":"2022","cve_id":"1117","vulnerable":"1","versionEndIncluding":"","cpe1":"cpe","cpe2":"2.3","cpe3":"a","cpe4":"fapolicyd_project","cpe5":"fapolicyd","cpe6":"*","cpe7":"*","cpe8":"*","cpe9":"*","cpe10":"*","cpe11":"*","cpe12":"*","cpe13":"*"}],"vendor_comments":[],"enrichments":{"kev":null,"epss":null,"legacy_qids":[{"cve":"CVE-2022-1117","qid":"159820","title":"Oracle Enterprise Linux Security Update for fapolicyd (ELSA-2022-1898)"},{"cve":"CVE-2022-1117","qid":"240306","title":"Red Hat Update for fapolicyd security (RHSA-2022:1898)"},{"cve":"CVE-2022-1117","qid":"240382","title":"Red Hat Update for fapolicyd (RHSA-2022:4824)"},{"cve":"CVE-2022-1117","qid":"282795","title":"Fedora Security Update for fapolicyd (FEDORA-2022-47a86f6258)"},{"cve":"CVE-2022-1117","qid":"282796","title":"Fedora Security Update for fapolicyd (FEDORA-2022-bba9ca95b5)"},{"cve":"CVE-2022-1117","qid":"903837","title":"Common Base Linux Mariner (CBL-Mariner) Security Update for fapolicyd (10863)"},{"cve":"CVE-2022-1117","qid":"907308","title":"Common Base Linux Mariner (CBL-Mariner) Security Update for fapolicyd (10863-1)"},{"cve":"CVE-2022-1117","qid":"940545","title":"AlmaLinux Security Update for fapolicyd (ALSA-2022:1898)"},{"cve":"CVE-2022-1117","qid":"960245","title":"Rocky Linux Security Update for fapolicyd (RLSA-2022:1898)"}]},"source_records":{"cve_program":{"data_version":"4.0","data_type":"CVE","data_format":"MITRE","CVE_data_meta":{"ID":"CVE-2022-1117","ASSIGNER":"secalert@redhat.com","STATE":"PUBLIC"},"description":{"description_data":[{"lang":"eng","value":"A vulnerability was found in fapolicyd. The vulnerability occurs due to an assumption on how glibc names the runtime linker, a build time regular expression may not correctly detect the runtime linker. The consequence is that the pattern detection for applications launched by the run time linker may fail to detect the pattern and allow execution."}]},"problemtype":{"problemtype_data":[{"description":[{"lang":"eng","value":"CWE-552 - Files or Directories Accessible to External Parties.","cweId":"CWE-552"}]}]},"affects":{"vendor":{"vendor_data":[{"vendor_name":"n/a","product":{"product_data":[{"product_name":"fapolicyd","version":{"version_data":[{"version_affected":"=","version_value":"Fixed in v1.1.2"}]}}]}}]}},"references":{"reference_data":[{"url":"https://bugzilla.redhat.com/show_bug.cgi?id=2068171","refsource":"MISC","name":"https://bugzilla.redhat.com/show_bug.cgi?id=2068171"},{"url":"https://bugzilla.redhat.com/show_bug.cgi?id=2066904","refsource":"MISC","name":"https://bugzilla.redhat.com/show_bug.cgi?id=2066904"},{"url":"https://github.com/linux-application-whitelisting/fapolicyd/commit/38a942613f93824c53164730b2b7a2f75b8cd263","refsource":"MISC","name":"https://github.com/linux-application-whitelisting/fapolicyd/commit/38a942613f93824c53164730b2b7a2f75b8cd263"},{"url":"https://access.redhat.com/security/cve/CVE-2022-1117","refsource":"MISC","name":"https://access.redhat.com/security/cve/CVE-2022-1117"}]}},"nvd":{"publishedDate":"2022-08-29 15:15:00","lastModifiedDate":"2023-02-12 22:15:00","problem_types":["CWE-552"],"metrics":{"baseMetricV3":{"cvssV3":{"version":"3.1","vectorString":"CVSS:3.1/AV:L/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H","attackVector":"LOCAL","attackComplexity":"LOW","privilegesRequired":"NONE","userInteraction":"NONE","scope":"UNCHANGED","confidentialityImpact":"HIGH","integrityImpact":"HIGH","availabilityImpact":"HIGH","baseScore":8.4,"baseSeverity":"HIGH"},"exploitabilityScore":2.5,"impactScore":5.9}},"configurations":{"CVE_data_version":"4.0","nodes":[{"operator":"OR","children":[],"cpe_match":[{"vulnerable":true,"cpe23Uri":"cpe:2.3:a:fapolicyd_project:fapolicyd:*:*:*:*:*:*:*:*","versionEndExcluding":"1.1.2","cpe_name":[]}]}]}},"legacy_mitre":{"record":null,"notes":[]}}}