Use-After-Free Vulnerability - CVE-2022-32250

Use-After-Free Vulnerability - CVE-2022-32250

CVEs

7.8 High Severity

OS

Fedora
FedoraFedoraproject

Screenshots from the blog posts

images/cll658k0vaa071io84j4sg4ms.jpgimages/cll658k0vaa071io84j4sg4ms.jpg

Summary

CVE-2022-32250 - net/netfilter/nf_tables_api.c in the Linux kernel through 5.18.1 allows a local user (able to create user/net namespaces) to escalate privileges to root because an incorrect NFT_STATEFUL_EXPR check leads to a use-after-free.

Description

Total vcoins

0

Comments (2)