CVE-2022-0330
Vulnerability Summary
Timeline
Description
A random memory access flaw was found in the Linux kernel's GPU i915 kernel driver functionality in the way a user may run malicious code on the GPU. This flaw allows a local user to crash the system or escalate their privileges on the system.
CVSS Metrics
- v3.1•HIGH•Score: 7.8CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H
- v2.0•MEDIUM•Score: 4.6AV:L/AC:L/Au:N/C:P/I:P/A:P
EPSS Trends
Current EPSS score: 0.04%• Percentile: 12%
Techniques & Countermeasures
- CWE-281•Improper Preservation of Permissions
The product does not preserve permissions or incorrectly preserves permissions when copying, restoring, or sharing objects, which can cause them to have less restrictive permissions than intended.
Affected Systems
- fedoraproject•fedora
34 | 35
- linux•linux_kernel
< 5.17 | 5.17 | 5.17:rc1
- netapp•h300e
na
- netapp•h300s_firmware
na
- netapp•h410c_firmware
na
- netapp•h410s_firmware
na
- netapp•h500e
na
- netapp•h500s_firmware
na
- netapp•h700e
na
- netapp•h700s_firmware
na
- redhat•3scale_api_management
2.0
- redhat•codeready_linux_builder
8.0 | 8.4
- redhat•codeready_linux_builder_eus
8.2
- redhat•codeready_linux_builder_eus_for_power_little_endian
8.2
- redhat•codeready_linux_builder_for_power_little_endian_eus
8.0 | 8.4
- redhat•developer_tools
1.0
- redhat•enterprise_linux
8.0
- redhat•enterprise_linux_desktop
7.0
- redhat•enterprise_linux_eus
8.2 | 8.4
- redhat•enterprise_linux_for_ibm_z_systems
8.0
- redhat•enterprise_linux_for_ibm_z_systems_eus
8.2 | 8.4
- redhat•enterprise_linux_for_power_big_endian
7.0
- redhat•enterprise_linux_for_power_little_endian
7.0 | 8.0
- redhat•enterprise_linux_for_power_little_endian_eus
8.2 | 8.4
- redhat•enterprise_linux_for_real_time
7 | 8
- redhat•enterprise_linux_for_real_time_for_nfv
7 | 8
- redhat•enterprise_linux_for_real_time_for_nfv_tus
8.2 | 8.4
- redhat•enterprise_linux_for_real_time_tus
8.2 | 8.4
- redhat•enterprise_linux_for_scientific_computing
7.0
- redhat•enterprise_linux_server
7.0
- redhat•enterprise_linux_server_aus
7.3 | 7.4 | 7.6 | 7.7 | 8.2 | 8.4
- redhat•enterprise_linux_server_for_power_little_endian_update_services_for_sap_solutions
7.6 | 7.7 | 8.1 | 8.2 | 8.4
- redhat•enterprise_linux_server_tus
7.7 | 8.2 | 8.4
- redhat•enterprise_linux_server_update_services_for_sap_solutions
7.7 | 7.6 | 8.1 | 8.2 | 8.4
- redhat•enterprise_linux_workstation
7.0
- redhat•ovirt-node
4.4.10
- redhat•virtualization
4.0
- redhat•virtualization_host
4.0