OESA-2022-1942
Dashboard / Vulnerabilities / OESA-2022-1942
OESA-2022-1942
Summary: kernel security update
Details: The Linux Kernel, the operating system core itself. Security Fix(es): Non-transparent sharing of return predictor targets between contexts in some Intel(R) Processors may allow an authorized user to potentially enable information disclosure via local access.(CVE-2022-26373) A heap-based buffer overflow was found in the Linux kernel's LightNVM subsystem. The issue results from the lack of proper validation of the length of user-supplied data prior to copying it to a fixed-length heap-based buffer. This vulnerability allows a local attacker to escalate privileges and execute arbitrary code in the context of the kernel. The attacker must first obtain the ability to execute high-privileged code on the target system to exploit this vulnerability.(CVE-2022-2991) An out-of-bounds memory read flaw was found in the Linux kernel's BPF subsystem in how a user calls the bpf_tail_call function with a key larger than the max_entries of the map. This flaw allows a local user to gain unauthorized access to data.(CVE-2022-2905) An issue was discovered in the Linux kernel through 5.16-rc6. There is a lack of check after calling vzalloc() and lack of free after allocation in drivers/media/test-drivers/vidtv/vidtv_s302m.c.(CVE-2022-3078) An issue was discovered in the Linux kernel through 5.19.8. drivers/firmware/efi/capsule-loader.c has a race condition with a resultant use-after-free.(CVE-2022-40307)
References: https://www.openeuler.org/en/security/safety-bulletin/detail.html?id=openEuler-SA-2022-1942, https://nvd.nist.gov/vuln/detail/CVE-2022-26373, https://nvd.nist.gov/vuln/detail/CVE-2022-2991, https://nvd.nist.gov/vuln/detail/CVE-2022-2905, https://nvd.nist.gov/vuln/detail/CVE-2022-3078, https://nvd.nist.gov/vuln/detail/CVE-2022-40307
Affected packages
Package
Name: kernel
Purl: pkg:rpm/openEuler/kernel&distro=openEuler-22.03-LTS
Affected ranges
Type: ECOSYSTEM
Events:
