Vulnerability Monitor

The vendors, products, and vulnerabilities you care about

CVE-2022-1016


A flaw was found in the Linux kernel in net/netfilter/nf_tables_core.c:nft_do_chain, which can cause a use-after-free. This issue needs to handle 'return' with proper preconditions, as it can lead to a kernel information leak problem caused by a local, unprivileged attacker.


Published

2022-08-29T15:15:10.143

Last Modified

2024-11-21T06:39:51.973

Status

Modified

Source

[email protected]

Severity

CVSSv3.1: 5.5 (MEDIUM)

Weaknesses
  • Type: Secondary
    CWE-824
  • Type: Primary
    CWE-909

Affected Vendors & Products
Type Vendor Product Version/Range Vulnerable?
Operating System linux linux_kernel ≤ 3.12 Yes
Operating System linux linux_kernel ≤ 5.17 Yes
Operating System linux linux_kernel 3.13 Yes
Operating System redhat enterprise_linux 8.0 Yes
Operating System redhat enterprise_linux 9.0 Yes

References