Vulnerability Monitor

The vendors, products, and vulnerabilities you care about

CVE-2022-3649


A vulnerability was found in Linux Kernel. It has been classified as problematic. Affected is the function nilfs_new_inode of the file fs/nilfs2/inode.c of the component BPF. The manipulation leads to use after free. It is possible to launch the attack remotely. It is recommended to apply a patch to fix this issue. The identifier of this vulnerability is VDB-211992.


Published

2022-10-21T20:15:09.837

Last Modified

2024-11-21T07:19:57.160

Status

Modified

Source

[email protected]

Severity

CVSSv3.1: 3.1 (LOW)

Weaknesses
  • Type: Secondary
    CWE-119
  • Type: Secondary
    CWE-416

Affected Vendors & Products
Type Vendor Product Version/Range Vulnerable?
Operating System linux linux_kernel < 4.9.331 Yes
Operating System linux linux_kernel < 4.14.296 Yes
Operating System linux linux_kernel < 4.19.262 Yes
Operating System linux linux_kernel < 5.4.220 Yes
Operating System linux linux_kernel < 5.10.148 Yes
Operating System linux linux_kernel < 5.15.74 Yes
Operating System linux linux_kernel < 5.19.16 Yes
Operating System linux linux_kernel < 6.0.2 Yes
Operating System debian debian_linux 10.0 Yes
Application netapp active_iq_unified_manager - Yes
Operating System netapp h300s_firmware - Yes
Hardware netapp h300s - No
Operating System netapp h500s_firmware - Yes
Hardware netapp h500s - No
Operating System netapp h700s_firmware - Yes
Hardware netapp h700s - No
Operating System netapp h410s_firmware - Yes
Hardware netapp h410s - No

References