CVE Vulnerabilities

CVE-2022-0330

Improper Preservation of Permissions

Published: Mar 25, 2022 | Modified: Dec 07, 2022
CVSS 3.x
7.8
HIGH
Source:
NVD
CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H
CVSS 2.x
4.6 MEDIUM
AV:L/AC:L/Au:N/C:P/I:P/A:P
RedHat/V2
RedHat/V3
Ubuntu

A random memory access flaw was found in the Linux kernels GPU i915 kernel driver functionality in the way a user may run malicious code on the GPU. This flaw allows a local user to crash the system or escalate their privileges on the system.

Weakness

The product does not preserve permissions or incorrectly preserves permissions when copying, restoring, or sharing objects, which can cause them to have less restrictive permissions than intended.

Affected Software

Name Vendor Start Version End Version
Linux_kernel Linux * 5.17 (excluding)
Linux_kernel Linux 5.17 (including) 5.17 (including)
Linux_kernel Linux 5.17-rc1 (including) 5.17-rc1 (including)

References