CVE-2022-0382
Dashboard / Vulnerabilities / CVE-2022-0382
CVE-2022-0382
Published: 11 Feb 2022Last Modified: 12 Aug 2026
Summary:
Details: An information leak flaw was found due to uninitialized memory in the Linux kernel's TIPC protocol subsystem, in the way a user sends a TIPC datagram to one or more destinations. This flaw allows a local user to read some kernel memory. This issue is limited to no more than 7 bytes, and the user cannot control what is read. This flaw affects the Linux kernel versions prior to 5.17-rc1.
References: https://github.com/CVEProject/cvelistV5/tree/main/cves/2022/0xxx/CVE-2022-0382.json, https://nvd.nist.gov/vuln/detail/CVE-2022-0382, https://github.com/torvalds/linux/commit/d6d86830705f173fca6087a3e67ceaf68db80523
Affected packages
Package
Name:
Purl:
Affected ranges
Type: GIT
Events:
Introduced- e783362eb54cd99b2cac8b3a9aeac942e6f6ac07
Fixed -None
Affected versions
Linux kernel versions prior to 5.17-rc1
Common Vulnerability Scoring System
Attack Vector
Network
Adjacent
Local
Physical
Privileges Required
None
Low
High
User Interaction
None
Required
Scope
Unchanged
Changed
Confidentiality
None
Low
High
Integrity
None
Low
High
Availability
None
Low
High
