Vulnerability Monitor

The vendors, products, and vulnerabilities you care about

CVE-2022-2639


An integer coercion error was found in the openvswitch kernel module. Given a sufficiently large number of actions, while copying and reserving memory for a new action of a new flow, the reserve_sfa_size() function does not return -EMSGSIZE as expected, potentially leading to an out-of-bounds write access. This flaw allows a local user to crash or potentially escalate their privileges on the system.


Published

2022-09-01T21:15:09.600

Last Modified

2024-11-21T07:01:25.320

Status

Modified

Source

[email protected]

Severity

CVSSv3.1: 7.8 (HIGH)

Weaknesses
  • Type: Secondary
    CWE-192
  • Type: Primary
    CWE-681

Affected Vendors & Products
Type Vendor Product Version/Range Vulnerable?
Operating System linux linux_kernel < 3.19 Yes
Operating System linux linux_kernel < 4.5 Yes
Operating System linux linux_kernel < 4.9.312 Yes
Operating System linux linux_kernel < 4.14.277 Yes
Operating System linux linux_kernel < 4.19.240 Yes
Operating System linux linux_kernel < 5.4.191 Yes
Operating System linux linux_kernel < 5.10.113 Yes
Operating System linux linux_kernel < 5.15.36 Yes
Operating System linux linux_kernel < 5.17.5 Yes
Operating System redhat enterprise_linux 8.0 Yes
Operating System redhat enterprise_linux 9.0 Yes

References