UBUNTU-CVE-2022-24448 Published: 4 Feb 2022Last Modified: 9 Sept 2026
Details: An issue was discovered in fs/nfs/dir.c in the Linux kernel before 5.16.5. If an application sets the O_DIRECTORY flag, and tries to open a regular file, nfs_atomic_open() performs a regular lookup. If a regular file is found, ENOTDIR should occur, but the server instead returns uninitialized data in the file descriptor.
References: https://ubuntu.com/security/CVE-2022-24448 , https://git.kernel.org/cgit/linux/kernel/git/torvalds/linux.git/commit/?id=ac795161c93699d600db16c1a8cc23a65a1eceaf , https://www.spinics.net/lists/stable/msg531976.html , https://cdn.kernel.org/pub/linux/kernel/v5.x/ChangeLog-5.16.5 , https://github.com/torvalds/linux/commit/ac795161c93699d600db16c1a8cc23a65a1eceaf , https://ubuntu.com/security/notices/USN-5302-1 , https://ubuntu.com/security/notices/USN-5383-1 , https://ubuntu.com/security/notices/USN-5384-1 , https://ubuntu.com/security/notices/USN-5385-1 , https://www.cve.org/CVERecord?id=CVE-2022-24448 , https://ubuntu.com/security/notices/USN-7148-1
linux-aws
linux-azure
linux-lts-xenial
linux
linux
linux-aws
linux-aws-hwe
linux-azure
linux-gcp
linux-hwe
linux-kvm
linux-oracle
linux-hwe-edge
linux-fips
linux-fips
linux
linux-aws
linux-aws-5.4
linux-azure-4.15
linux-azure-5.4
linux-dell300x
linux-gcp-4.15
linux-gcp-5.4
linux-gke-5.4
linux-gkeop-5.4
linux-hwe-5.4
linux-ibm-5.4
linux-kvm
linux-oracle
linux-oracle-5.4
linux-raspi-5.4
linux-raspi2
linux-snapdragon
linux-aws-5.0
linux-aws-5.3
linux-azure
linux-azure-5.3
linux-azure-edge
linux-gcp
linux-gcp-5.3
linux-gke-4.15
linux-hwe
linux-hwe-edge
linux-oem
linux-oracle-5.0
linux-oracle-5.3
linux-aws-fips
linux-azure-fips
linux-fips
linux-gcp-fips
linux-aws-fips
linux-azure-fips
linux-fips
linux-gcp-fips
linux
linux-aws
linux-aws-5.13
linux-azure
linux-azure-5.13
linux-bluefield
linux-gcp
linux-gcp-5.13
linux-gke
linux-gkeop
linux-hwe-5.13
linux-ibm
linux-intel-5.13
linux-iot
linux-kvm
linux-oem-5.14
linux-oracle
linux-oracle-5.13
linux-raspi
linux-aws-5.11
linux-aws-5.8
linux-azure-5.11
linux-azure-5.8
linux-gcp-5.11
linux-gcp-5.8
linux-hwe-5.11
linux-hwe-5.8
linux-oem-5.10
linux-oem-5.13
linux-oem-5.6
linux-oracle-5.11
linux-oracle-5.8
linux-raspi2
linux-riscv
linux-riscv-5.11
linux-riscv-5.8
linux-aws-fips
linux-azure-fips
linux-fips
linux-gcp-fips
linux-aws-fips
linux-azure-fips
linux-fips
linux-gcp-fips
linux-intel-iot-realtime
linux-realtime
linux-raspi-realtime
Package Name: linux-aws
Purl: pkg:deb/ubuntu/linux-aws?arch=source&distro=trusty%2Fesm
Affected ranges Type: ECOSYSTEM
Events:
Introduced - 0
Fixed - 4.4.0-1138.144
4.4.0-1002.2
4.4.0-1003.3
4.4.0-1005.5
4.4.0-1006.6
4.4.0-1009.9
4.4.0-1010.10
4.4.0-1011.11
4.4.0-1012.12
4.4.0-1014.14
4.4.0-1016.16
4.4.0-1017.17
4.4.0-1019.19
4.4.0-1022.22
4.4.0-1023.23
4.4.0-1024.25
4.4.0-1025.26
4.4.0-1027.30
4.4.0-1028.31
4.4.0-1029.32
4.4.0-1031.34
4.4.0-1032.35
4.4.0-1034.37
4.4.0-1036.39
4.4.0-1037.40
4.4.0-1038.41
4.4.0-1039.42
4.4.0-1040.43
4.4.0-1042.45
4.4.0-1044.47
4.4.0-1045.48
4.4.0-1046.50
4.4.0-1048.52
4.4.0-1050.54
4.4.0-1052.56
4.4.0-1054.58
4.4.0-1055.59
4.4.0-1056.60
4.4.0-1058.62
4.4.0-1059.63
4.4.0-1060.64
4.4.0-1061.65
4.4.0-1062.66
4.4.0-1064.68
4.4.0-1065.69
4.4.0-1066.70
4.4.0-1067.71
4.4.0-1073.77
4.4.0-1074.78
4.4.0-1075.79
4.4.0-1076.80
4.4.0-1077.81
4.4.0-1078.82
4.4.0-1081.85
4.4.0-1082.86
4.4.0-1083.87
4.4.0-1085.89
4.4.0-1086.90
4.4.0-1087.91
4.4.0-1088.92
4.4.0-1090.94
4.4.0-1091.95
4.4.0-1092.96
4.4.0-1093.97
4.4.0-1094.99
4.4.0-1095.100
4.4.0-1096.101
4.4.0-1097.102
4.4.0-1098.103
4.4.0-1099.104
4.4.0-1101.106
4.4.0-1102.107
4.4.0-1103.108
4.4.0-1104.109
4.4.0-1107.113
4.4.0-1109.115
4.4.0-1110.116
4.4.0-1111.117
4.4.0-1112.118
4.4.0-1113.119
4.4.0-1114.120
4.4.0-1115.121
4.4.0-1116.122
4.4.0-1117.123
4.4.0-1118.124
4.4.0-1119.125
4.4.0-1120.126
4.4.0-1121.127
4.4.0-1122.128
4.4.0-1123.129
4.4.0-1124.130
4.4.0-1125.131
4.4.0-1127.133
4.4.0-1128.134
4.4.0-1129.135
4.4.0-1130.136
4.4.0-1131.137
4.4.0-1133.139
4.4.0-1134.140
4.4.0-1135.141
4.4.0-1136.142
4.4.0-1137.143