Vulnerability Name:

CVE-2022-1055 (CCN-222851)

Assigned:2022-01-31
Published:2022-01-31
Updated:2022-10-19
Summary:A use-after-free exists in the Linux Kernel in tc_new_tfilter that could allow a local attacker to gain privilege escalation. The exploit requires unprivileged user namespaces. We recommend upgrading past commit 04c2a47ffb13c29778e2a14e414ad4cb5a5db4b5
CVSS v3 Severity:7.8 High (CVSS v3.1 Vector: CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H)
6.8 Medium (Temporal CVSS v3.1 Vector: CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H/E:U/RL:O/RC:C)
Exploitability Metrics:Attack Vector (AV): Local
Attack Complexity (AC): Low
Privileges Required (PR): Low
User Interaction (UI): None
Scope:Scope (S): Unchanged
Impact Metrics:Confidentiality (C): High
Integrity (I): High
Availibility (A): High
6.3 Medium (CCN CVSS v3.1 Vector: CVSS:3.1/AV:L/AC:H/PR:L/UI:N/S:U/C:H/I:H/A:N)
5.5 Medium (CCN Temporal CVSS v3.1 Vector: CVSS:3.1/AV:L/AC:H/PR:L/UI:N/S:U/C:H/I:H/A:N/E:U/RL:O/RC:C)
Exploitability Metrics:Attack Vector (AV): Local
Attack Complexity (AC): High
Privileges Required (PR): Low
User Interaction (UI): None
Scope:Scope (S): Unchanged
Impact Metrics:Confidentiality (C): High
Integrity (I): High
Availibility (A): None
7.8 High (REDHAT CVSS v3.1 Vector: CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H)
6.8 Medium (REDHAT Temporal CVSS v3.1 Vector: CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H/E:U/RL:O/RC:C)
Exploitability Metrics:Attack Vector (AV): Local
Attack Complexity (AC): Low
Privileges Required (PR): Low
User Interaction (UI): None
Scope:Scope (S): Unchanged
Impact Metrics:Confidentiality (C): High
Integrity (I): High
Availibility (A): High
CVSS v2 Severity:4.6 Medium (CVSS v2 Vector: AV:L/AC:L/Au:N/C:P/I:P/A:P)
Exploitability Metrics:Access Vector (AV): Local
Access Complexity (AC): Low
Authentication (Au): None
Impact Metrics:Confidentiality (C): Partial
Integrity (I): Partial
Availibility (A): Partial
5.5 Medium (CCN CVSS v2 Vector: AV:L/AC:H/Au:S/C:C/I:C/A:N)
Exploitability Metrics:Access Vector (AV): Local
Access Complexity (AC): High
Athentication (Au): Single_Instance
Impact Metrics:Confidentiality (C): Complete
Integrity (I): Complete
Availibility (A): None
Vulnerability Type:CWE-416
Vulnerability Consequences:Gain Privileges
References:Source: MITRE
Type: CNA
CVE-2022-1055

Source: MISC
Type: Third Party Advisory, VDB Entry
http://packetstormsecurity.com/files/167386/Kernel-Live-Patch-Security-Notice-LSN-0086-1.html

Source: XF
Type: UNKNOWN
linux-kernel-cve20221055-priv-esc(222851)

Source: CCN
Type: Linux Kernel GIT Repository
net: sched: fix use-after-free in tc_new_tfilter()

Source: CONFIRM
Type: Patch, Vendor Advisory
N/A

Source: CONFIRM
Type: Exploit, Patch, Third Party Advisory
N/A

Source: CONFIRM
Type: Third Party Advisory
https://security.netapp.com/advisory/ntap-20220506-0007/

Source: CONFIRM
Type: Exploit, Patch, Third Party Advisory
N/A

Source: CCN
Type: IBM Security Bulletin 6854985 (Spectrum Copy Data Management)
Vulnerabilities in Linux Kernel and Golang Go might affect IBM Spectrum Copy Data Management

Source: CCN
Type: IBM Security Bulletin 6963936 (Spectrum Protect Plus)
Vulnerabilities in Linux Kernel may affect IBM Spectrum Protect Plus

Source: CCN
Type: WhiteSource Vulnerability Database
CVE-2022-1055

Vulnerable Configuration:Configuration 1:
  • cpe:/o:linux:linux_kernel:5.17:rc1:*:*:*:*:*:*
  • OR cpe:/o:linux:linux_kernel:5.17:rc2:*:*:*:*:*:*
  • OR cpe:/o:linux:linux_kernel:5.17:-:*:*:*:*:*:*
  • OR cpe:/o:linux:linux_kernel:*:*:*:*:*:*:*:* (Version >= 5.1 and < 5.17)

  • Configuration 2:
  • cpe:/o:redhat:enterprise_linux:8.0:*:*:*:*:*:*:*

  • Configuration 3:
  • cpe:/o:fedoraproject:fedora:35:*:*:*:*:*:*:*

  • Configuration 4:
  • cpe:/o:canonical:ubuntu_linux:18.04:*:*:*:lts:*:*:*
  • OR cpe:/o:canonical:ubuntu_linux:20.04:*:*:*:lts:*:*:*
  • OR cpe:/o:canonical:ubuntu_linux:16.04:*:*:*:esm:*:*:*
  • OR cpe:/o:canonical:ubuntu_linux:21.10:*:*:*:*:*:*:*
  • OR cpe:/o:canonical:ubuntu_linux:22.04:*:*:*:lts:*:*:*

  • Configuration 5:
  • cpe:/o:netapp:h300s_firmware:-:*:*:*:*:*:*:*
  • AND
  • cpe:/h:netapp:h300s:-:*:*:*:*:*:*:*

  • Configuration 6:
  • cpe:/o:netapp:h500s_firmware:-:*:*:*:*:*:*:*
  • AND
  • cpe:/h:netapp:h500s:-:*:*:*:*:*:*:*

  • Configuration 7:
  • cpe:/o:netapp:h700s_firmware:-:*:*:*:*:*:*:*
  • AND
  • cpe:/h:netapp:h700s:-:*:*:*:*:*:*:*

  • Configuration 8:
  • cpe:/o:netapp:h300e_firmware:-:*:*:*:*:*:*:*
  • AND
  • cpe:/h:netapp:h300e:-:*:*:*:*:*:*:*

  • Configuration 9:
  • cpe:/o:netapp:h500e_firmware:-:*:*:*:*:*:*:*
  • AND
  • cpe:/h:netapp:h500e:-:*:*:*:*:*:*:*

  • Configuration 10:
  • cpe:/o:netapp:h700e_firmware:-:*:*:*:*:*:*:*
  • AND
  • cpe:/h:netapp:h700e:-:*:*:*:*:*:*:*

  • Configuration 11:
  • cpe:/o:netapp:h410s_firmware:-:*:*:*:*:*:*:*
  • AND
  • cpe:/h:netapp:h410s:-:*:*:*:*:*:*:*

  • Configuration 12:
  • cpe:/o:netapp:h410c_firmware:-:*:*:*:*:*:*:*
  • AND
  • cpe:/h:netapp:h410c:-:*:*:*:*:*:*:*

  • Configuration RedHat 1:
  • cpe:/a:redhat:enterprise_linux:9:*:*:*:*:*:*:*

  • Configuration RedHat 2:
  • cpe:/a:redhat:enterprise_linux:9::nfv:*:*:*:*:*

  • Configuration RedHat 3:
  • cpe:/a:redhat:enterprise_linux:9::realtime:*:*:*:*:*

  • Configuration RedHat 4:
  • cpe:/a:redhat:enterprise_linux:9::appstream:*:*:*:*:*

  • Configuration RedHat 5:
  • cpe:/a:redhat:enterprise_linux:9::crb:*:*:*:*:*

  • Configuration RedHat 6:
  • cpe:/o:redhat:enterprise_linux:9:*:*:*:*:*:*:*

  • Configuration RedHat 7:
  • cpe:/o:redhat:enterprise_linux:9::baseos:*:*:*:*:*

  • Configuration RedHat 8:
  • cpe:/a:redhat:enterprise_linux:8:*:*:*:*:*:*:*

  • Configuration RedHat 9:
  • cpe:/a:redhat:enterprise_linux:8::nfv:*:*:*:*:*

  • Configuration RedHat 10:
  • cpe:/a:redhat:enterprise_linux:8::realtime:*:*:*:*:*

  • Configuration RedHat 11:
  • cpe:/a:redhat:enterprise_linux:8::crb:*:*:*:*:*

  • Configuration RedHat 12:
  • cpe:/o:redhat:enterprise_linux:8:*:*:*:*:*:*:*

  • Configuration RedHat 13:
  • cpe:/o:redhat:enterprise_linux:8::baseos:*:*:*:*:*

  • Configuration CCN 1:
  • cpe:/o:linux:linux_kernel:-:*:*:*:*:*:*:*
  • AND
  • cpe:/a:ibm:spectrum_copy_data_management:2.2.0.0:*:*:*:*:*:*:*

  • * Denotes that component is vulnerable
    Oval Definitions
    Definition IDClassTitleLast Modified
    oval:org.opensuse.security:def:8029
    P
    kernel-docs-5.14.21-150500.53.2 on GA media (Moderate)
    2023-06-20
    oval:org.opensuse.security:def:8090
    P
    reiserfs-kmp-default-5.14.21-150500.53.2 on GA media (Moderate)
    2023-06-12
    oval:org.opensuse.security:def:7539
    P
    kernel-64kb-5.14.21-150500.53.2 on GA media (Moderate)
    2023-06-12
    oval:com.redhat.rhsa:def:20227444
    P
    RHSA-2022:7444: kernel-rt security and bug fix update (Moderate)
    2022-11-08
    oval:com.redhat.rhsa:def:20227683
    P
    RHSA-2022:7683: kernel security, bug fix, and enhancement update (Moderate)
    2022-11-08
    oval:com.redhat.rhsa:def:20226002
    P
    RHSA-2022:6002: kernel-rt security and bug fix update (Moderate)
    2022-08-09
    oval:com.redhat.rhsa:def:20226003
    P
    RHSA-2022:6003: kernel security, bug fix, and enhancement update (Moderate)
    2022-08-09
    oval:org.opensuse.security:def:3398
    P
    wpa_supplicant-2.6-15.10.1 on GA media (Moderate)
    2022-06-28
    oval:org.opensuse.security:def:3448
    P
    busybox-1.21.1-3.3 on GA media (Moderate)
    2022-06-28
    oval:org.opensuse.security:def:3453
    P
    clamav-0.101.3-1.19 on GA media (Moderate)
    2022-06-28
    oval:org.opensuse.security:def:3567
    P
    libXtst6-1.2.2-7.1 on GA media (Moderate)
    2022-06-28
    oval:org.opensuse.security:def:95028
    P
    kernel-docs-5.14.21-150400.22.1 on GA media (Moderate)
    2022-06-22
    oval:org.opensuse.security:def:95078
    P
    reiserfs-kmp-default-5.14.21-150400.22.1 on GA media (Moderate)
    2022-06-22
    oval:org.opensuse.security:def:95083
    P
    kernel-azure-5.14.21-150400.12.1 on GA media (Moderate)
    2022-06-22
    oval:org.opensuse.security:def:2960
    P
    kernel-64kb-5.14.21-150400.22.1 on GA media (Moderate)
    2022-06-22
    oval:org.opensuse.security:def:94590
    P
    kernel-64kb-5.14.21-150400.22.1 on GA media (Moderate)
    2022-06-22
    oval:org.opensuse.security:def:95197
    P
    kernel-default-extra-5.14.21-150400.22.1 on GA media (Moderate)
    2022-06-22
    oval:org.opensuse.security:def:1332
    P
    Security update for the Linux Kernel (Live Patch 15 for SLE 15 SP3) (Important)
    2022-04-28
    oval:org.opensuse.security:def:101985
    P
    Security update for the Linux Kernel (Live Patch 15 for SLE 15 SP3) (Important)
    2022-04-28
    oval:org.opensuse.security:def:102155
    P
    Security update for the Linux Kernel (Important)
    2022-04-26
    oval:org.opensuse.security:def:42370
    P
    Security update for the Linux Kernel (Important)
    2022-04-26
    oval:org.opensuse.security:def:1595
    P
    Security update for the Linux Kernel (Important)
    2022-04-26
    oval:org.opensuse.security:def:42269
    P
    Security update for the Linux Kernel (Important)
    2022-04-26
    oval:org.opensuse.security:def:101983
    P
    Security update for the Linux Kernel (Live Patch 9 for SLE 15 SP3) (Important)
    2022-04-25
    oval:org.opensuse.security:def:101976
    P
    Security update for the Linux Kernel (Live Patch 11 for SLE 15 SP3) (Important)
    2022-04-25
    oval:org.opensuse.security:def:1331
    P
    Security update for the Linux Kernel (Live Patch 16 for SLE 15 SP3) (Important)
    2022-04-25
    oval:org.opensuse.security:def:118142
    P
    Security update for the Linux Kernel (Live Patch 14 for SLE 15 SP2) (Important)
    2022-04-25
    oval:org.opensuse.security:def:1324
    P
    Security update for the Linux Kernel (Live Patch 13 for SLE 15 SP3) (Important)
    2022-04-25
    oval:org.opensuse.security:def:101980
    P
    Security update for the Linux Kernel (Live Patch 12 for SLE 15 SP3) (Important)
    2022-04-25
    oval:org.opensuse.security:def:118146
    P
    Security update for the Linux Kernel (Live Patch 18 for SLE 15 SP2) (Important)
    2022-04-25
    oval:org.opensuse.security:def:1328
    P
    Security update for the Linux Kernel (Live Patch 1 for SLE 15 SP3) (Important)
    2022-04-25
    oval:org.opensuse.security:def:118139
    P
    Security update for the Linux Kernel (Live Patch 19 for SLE 15 SP2) (Important)
    2022-04-25
    oval:org.opensuse.security:def:1321
    P
    Security update for the Linux Kernel (Live Patch 0 for SLE 15 SP3) (Important)
    2022-04-25
    oval:org.opensuse.security:def:101984
    P
    Security update for the Linux Kernel (Live Patch 16 for SLE 15 SP3) (Important)
    2022-04-25
    oval:org.opensuse.security:def:101977
    P
    Security update for the Linux Kernel (Live Patch 13 for SLE 15 SP3) (Important)
    2022-04-25
    oval:org.opensuse.security:def:118143
    P
    Security update for the Linux Kernel (Live Patch 15 for SLE 15 SP2) (Important)
    2022-04-25
    oval:org.opensuse.security:def:1325
    P
    Security update for the Linux Kernel (Live Patch 2 for SLE 15 SP3) (Important)
    2022-04-25
    oval:org.opensuse.security:def:101981
    P
    Security update for the Linux Kernel (Live Patch 1 for SLE 15 SP3) (Important)
    2022-04-25
    oval:org.opensuse.security:def:118147
    P
    Security update for the Linux Kernel (Live Patch 20 for SLE 15 SP2) (Important)
    2022-04-25
    oval:org.opensuse.security:def:101974
    P
    Security update for the Linux Kernel (Live Patch 0 for SLE 15 SP3) (Important)
    2022-04-25
    oval:org.opensuse.security:def:1329
    P
    Security update for the Linux Kernel (Live Patch 4 for SLE 15 SP3) (Important)
    2022-04-25
    oval:org.opensuse.security:def:118140
    P
    Security update for the Linux Kernel (Live Patch 21 for SLE 15 SP2) (Important)
    2022-04-25
    oval:org.opensuse.security:def:1322
    P
    Security update for the Linux Kernel (Live Patch 6 for SLE 15 SP3) (Important)
    2022-04-25
    oval:org.opensuse.security:def:101978
    P
    Security update for the Linux Kernel (Live Patch 2 for SLE 15 SP3) (Important)
    2022-04-25
    oval:org.opensuse.security:def:118144
    P
    Security update for the Linux Kernel (Live Patch 16 for SLE 15 SP2) (Important)
    2022-04-25
    oval:org.opensuse.security:def:1326
    P
    Security update for the Linux Kernel (Live Patch 3 for SLE 15 SP3) (Important)
    2022-04-25
    oval:org.opensuse.security:def:118137
    P
    Security update for the Linux Kernel (Live Patch 25 for SLE 15 SP2) (Important)
    2022-04-25
    oval:org.opensuse.security:def:101982
    P
    Security update for the Linux Kernel (Live Patch 4 for SLE 15 SP3) (Important)
    2022-04-25
    oval:org.opensuse.security:def:118148
    P
    Security update for the Linux Kernel (Live Patch 12 for SLE 15 SP2) (Important)
    2022-04-25
    oval:org.opensuse.security:def:101975
    P
    Security update for the Linux Kernel (Live Patch 6 for SLE 15 SP3) (Important)
    2022-04-25
    oval:org.opensuse.security:def:1330
    P
    Security update for the Linux Kernel (Live Patch 9 for SLE 15 SP3) (Important)
    2022-04-25
    oval:org.opensuse.security:def:118141
    P
    Security update for the Linux Kernel (Live Patch 23 for SLE 15 SP2) (Important)
    2022-04-25
    oval:org.opensuse.security:def:1323
    P
    Security update for the Linux Kernel (Live Patch 11 for SLE 15 SP3) (Important)
    2022-04-25
    oval:org.opensuse.security:def:101979
    P
    Security update for the Linux Kernel (Live Patch 3 for SLE 15 SP3) (Important)
    2022-04-25
    oval:org.opensuse.security:def:118145
    P
    Security update for the Linux Kernel (Live Patch 17 for SLE 15 SP2) (Important)
    2022-04-25
    oval:org.opensuse.security:def:1327
    P
    Security update for the Linux Kernel (Live Patch 12 for SLE 15 SP3) (Important)
    2022-04-25
    oval:org.opensuse.security:def:118138
    P
    Security update for the Linux Kernel (Live Patch 13 for SLE 15 SP2) (Important)
    2022-04-25
    oval:org.opensuse.security:def:118135
    P
    Security update for the Linux Kernel (Live Patch 24 for SLE 15 SP2) (Important)
    2022-04-24
    oval:org.opensuse.security:def:1317
    P
    Security update for the Linux Kernel (Live Patch 5 for SLE 15 SP3) (Important)
    2022-04-24
    oval:org.opensuse.security:def:101973
    P
    Security update for the Linux Kernel (Live Patch 7 for SLE 15 SP3) (Important)
    2022-04-24
    oval:org.opensuse.security:def:101970
    P
    Security update for the Linux Kernel (Live Patch 5 for SLE 15 SP3) (Important)
    2022-04-24
    oval:org.opensuse.security:def:118136
    P
    Security update for the Linux Kernel (Live Patch 22 for SLE 15 SP2) (Important)
    2022-04-24
    oval:org.opensuse.security:def:1318
    P
    Security update for the Linux Kernel (Live Patch 14 for SLE 15 SP3) (Important)
    2022-04-24
    oval:org.opensuse.security:def:101971
    P
    Security update for the Linux Kernel (Live Patch 14 for SLE 15 SP3) (Important)
    2022-04-24
    oval:org.opensuse.security:def:1319
    P
    Security update for the Linux Kernel (Live Patch 10 for SLE 15 SP3) (Important)
    2022-04-24
    oval:org.opensuse.security:def:101972
    P
    Security update for the Linux Kernel (Live Patch 10 for SLE 15 SP3) (Important)
    2022-04-24
    oval:org.opensuse.security:def:1320
    P
    Security update for the Linux Kernel (Live Patch 7 for SLE 15 SP3) (Important)
    2022-04-24
    oval:org.opensuse.security:def:118437
    P
    Security update for the Linux Kernel (Important)
    2022-04-19
    oval:org.opensuse.security:def:42175
    P
    Security update for the Linux Kernel (Important)
    2022-04-19
    oval:org.opensuse.security:def:42174
    P
    Security update for the Linux Kernel (Important)
    2022-04-14
    oval:org.opensuse.security:def:119060
    P
    Security update for the Linux Kernel (Important)
    2022-04-14
    oval:org.opensuse.security:def:118644
    P
    Security update for the Linux Kernel (Important)
    2022-04-14
    oval:org.opensuse.security:def:119177
    P
    Security update for the Linux Kernel (Important)
    2022-04-14
    oval:org.opensuse.security:def:118680
    P
    Security update for the Linux Kernel (Important)
    2022-04-14
    oval:org.opensuse.security:def:119367
    P
    Security update for the Linux Kernel (Important)
    2022-04-14
    oval:org.opensuse.security:def:118122
    P
    Security update for the Linux Kernel (Important)
    2022-04-14
    oval:org.opensuse.security:def:118870
    P
    Security update for the Linux Kernel (Important)
    2022-04-14
    oval:org.opensuse.security:def:119552
    P
    Security update for the Linux Kernel (Important)
    2022-04-14
    oval:org.opensuse.security:def:101952
    P
    Security update for the Linux Kernel (Important)
    2022-04-13
    oval:org.opensuse.security:def:99471
    P
    (Important)
    2022-04-13
    oval:org.opensuse.security:def:1747
    P
    Security update for the Linux Kernel (Important)
    2022-04-13
    oval:org.opensuse.security:def:101586
    P
    Security update for the Linux Kernel (Important)
    2022-04-13
    oval:org.opensuse.security:def:1157
    P
    Security update for the Linux Kernel (Important)
    2022-04-13
    oval:org.opensuse.security:def:42368
    P
    Security update for the Linux Kernel (Important)
    2022-04-13
    oval:org.opensuse.security:def:99733
    P
    (Important)
    2022-04-13
    oval:org.opensuse.security:def:102305
    P
    Security update for the Linux Kernel (Important)
    2022-04-13
    oval:org.opensuse.security:def:1797
    P
    Security update for the Linux Kernel (Important)
    2022-04-13
    oval:org.opensuse.security:def:101835
    P
    Security update for the Linux Kernel (Important)
    2022-04-13
    oval:org.opensuse.security:def:1231
    P
    Security update for the Linux Kernel (Important)
    2022-04-13
    oval:org.opensuse.security:def:100399
    P
    (Important)
    2022-04-13
    oval:org.opensuse.security:def:102349
    P
    Security update for the Linux Kernel (Important)
    2022-04-13
    oval:org.opensuse.security:def:42265
    P
    Security update for the Linux Kernel (Important)
    2022-04-13
    oval:org.opensuse.security:def:101891
    P
    Security update for the Linux Kernel (Important)
    2022-04-13
    oval:org.opensuse.security:def:1299
    P
    Security update for the Linux Kernel (Important)
    2022-04-13
    oval:org.opensuse.security:def:100732
    P
    (Important)
    2022-04-13
    oval:org.opensuse.security:def:855
    P
    Security update for the Linux Kernel (Important)
    2022-04-13
    oval:org.opensuse.security:def:1557
    P
    Security update for the Linux Kernel (Important)
    2022-04-12
    oval:org.opensuse.security:def:102121
    P
    Security update for the Linux Kernel (Important)
    2022-04-12
    BACK
    linux linux kernel 5.17 rc1
    linux linux kernel 5.17 rc2
    linux linux kernel 5.17 -
    linux linux kernel *
    redhat enterprise linux 8.0
    fedoraproject fedora 35
    canonical ubuntu linux 18.04
    canonical ubuntu linux 20.04
    canonical ubuntu linux 16.04
    canonical ubuntu linux 21.10
    canonical ubuntu linux 22.04
    netapp h300s firmware -
    netapp h300s -
    netapp h500s firmware -
    netapp h500s -
    netapp h700s firmware -
    netapp h700s -
    netapp h300e firmware -
    netapp h300e -
    netapp h500e firmware -
    netapp h500e -
    netapp h700e firmware -
    netapp h700e -
    netapp h410s firmware -
    netapp h410s -
    netapp h410c firmware -
    netapp h410c -
    linux linux kernel -
    ibm spectrum copy data management 2.2.0.0