UBUNTU-CVE-2022-1882
Dashboard / Vulnerabilities / UBUNTU-CVE-2022-1882
UBUNTU-CVE-2022-1882
Summary:
Details: A use-after-free flaw was found in the Linux kernel’s pipes functionality in how a user performs manipulations with the pipe post_one_notification() after free_pipe_info() that is already called. This flaw allows a local user to crash or potentially escalate their privileges on the system.
References: https://ubuntu.com/security/CVE-2022-1882, https://lore.kernel.org/lkml/[email protected]/T/, https://lore.kernel.org/lkml/[email protected]/, https://ssd-disclosure.com/ssd-advisory-linux-config_watch_queue-lpe/, https://ubuntu.com/security/notices/USN-5667-1, https://ubuntu.com/security/notices/USN-5683-1, https://ubuntu.com/security/notices/USN-5703-1, https://www.cve.org/CVERecord?id=CVE-2022-1882
Affected packages
Package
Name: linux-hwe-edge
Purl: pkg:deb/ubuntu/[email protected]~16.04.1?arch=source&distro=xenial
Affected ranges
Type: ECOSYSTEM
Events:
