The Linux kernel before 5.17.2 mishandles seccomp permissions. The PTRACE_SEIZE code path allows attackers to bypass intended restrictions on setting the PT_SUSPEND_SECCOMP flag.
2022-05-12T05:15:06.657
2024-11-21T07:02:59.423
Modified
CVSSv3.1: 7.8 (HIGH)
AV:L/AC:M/Au:N/C:P/I:P/A:P
3.4
6.4
Type | Vendor | Product | Version/Range | Vulnerable? |
---|---|---|---|---|
Operating System | linux | linux_kernel | < 4.19.238 | Yes |
Operating System | linux | linux_kernel | < 5.4.189 | Yes |
Operating System | linux | linux_kernel | < 5.10.110 | Yes |
Operating System | linux | linux_kernel | < 5.15.33 | Yes |
Operating System | linux | linux_kernel | < 5.16.19 | Yes |
Operating System | linux | linux_kernel | < 5.17.2 | Yes |
Operating System | debian | debian_linux | 9.0 | Yes |
Operating System | debian | debian_linux | 10.0 | Yes |
Application | netapp | solidfire\,_enterprise_sds_\&_hci_storage_node | - | Yes |
Application | netapp | solidfire_\&_hci_management_node | - | Yes |
Hardware | netapp | hci_compute_node | - | Yes |
Operating System | netapp | 8300_firmware | - | Yes |
Hardware | netapp | 8300 | - | No |
Operating System | netapp | 8700_firmware | - | Yes |
Hardware | netapp | 8700 | - | No |
Operating System | netapp | a400_firmware | - | Yes |
Hardware | netapp | a400 | - | No |
Operating System | netapp | h300s_firmware | - | Yes |
Hardware | netapp | h300s | - | No |
Operating System | netapp | h500s_firmware | - | Yes |
Hardware | netapp | h500s | - | No |
Operating System | netapp | h700s_firmware | - | Yes |
Hardware | netapp | h700s | - | No |
Operating System | netapp | h410s_firmware | - | Yes |
Hardware | netapp | h410s | - | No |
Operating System | netapp | h410c_firmware | - | Yes |
Hardware | netapp | h410c | - | No |