CVE-2022-2663

Aliases:UBUNTU-CVE-2022-2663DEBIAN-CVE-2022-2663CGA-28h6-cq63-7vfxCGA-2h5f-8gc3-62jpCGA-2q5p-gfxp-vrvmCGA-3553-6q59-mvmjCGA-38g6-hv6f-3v3jCGA-38jg-w3pm-cx25CGA-3cmq-fph5-c626CGA-3hrm-xpcw-5jjfCGA-4456-36wj-m6mcCGA-46hw-qvmm-2r37CGA-4cc6-wq6w-377pCGA-4fj5-xmgr-v7cjCGA-4w5r-gpgv-9ch7CGA-5828-w6qq-5qvfCGA-5fc9-cqwh-vjgpCGA-5j4r-pf4w-gpx4CGA-5xrv-4jfc-2r7mCGA-62w8-ph65-v2mgCGA-67hm-rg27-h65qCGA-67m7-qgw8-22rjCGA-6cxm-6vrf-639wCGA-6f69-q4mr-8p2jCGA-6jf6-3c9v-pp9hCGA-6jgw-3qq8-399mCGA-6mqr-r984-r69hCGA-6p54-6q7m-pvj8CGA-6w9x-pxv5-4m6qCGA-72w2-grq5-j5f9CGA-74mp-9h8g-mwg6CGA-783g-28wp-9vwhCGA-7cgr-qxvw-v3p2CGA-7fmh-fvpw-rc33CGA-7j75-567q-5ccjCGA-822v-jf5q-69pmCGA-85gp-2jg5-jc93CGA-8f5f-44gv-g28rCGA-8fh5-x522-594hCGA-8q53-275g-f5mfCGA-92qv-p22v-8j47CGA-987c-2gpv-h6wxCGA-99qx-8pcv-3g8gCGA-9f9v-xx3c-gx8vCGA-9g36-q8rv-jjjwCGA-9xq7-xr94-r4j6CGA-c4gq-q2wg-hg3mCGA-cfg6-x4xh-mr6wCGA-chmm-f592-7hhxCGA-chrq-vx3m-6pr7CGA-cjx8-7r45-hw4cCGA-cm8p-4g42-h5r6CGA-cwr9-jxfh-vp7hCGA-f3qh-3qp5-2gq4CGA-fc8x-mxx5-54gpCGA-fmhv-9cgj-g66rCGA-fmm9-2wm6-c8r7CGA-frw3-hvx4-c2c4CGA-g7r7-g3wg-vgqcCGA-g876-q4w2-jqh6CGA-h83m-4hg3-439rCGA-hjr6-xf48-jwpjCGA-hmm9-53vj-7wvwCGA-hv63-jwcc-j68cCGA-hvw2-whwc-7p3xCGA-hw8j-5vv3-2352CGA-hwvj-2gwc-2gxhCGA-jgm7-5gq4-mg76CGA-jmwc-vqf7-q5jrCGA-jrfx-qj6f-p4pwCGA-m86q-78gv-ccvhCGA-mq79-2h99-978gCGA-mrfh-h2h2-pph5CGA-mrph-7f2j-hvhmCGA-mwf2-3r89-4cvmCGA-p22r-2q8m-4f54CGA-p53h-v8cg-h7hgCGA-p7cg-qv3r-qxpwCGA-pccv-q8pc-4m3rCGA-pfr7-3qfv-p8rxCGA-ph6h-r2hx-mrc2CGA-pjmp-h2m9-mg47CGA-pq32-6845-2hrvCGA-pwc4-2vh6-5h7rCGA-pwgp-pmvh-g48vCGA-pwm3-hm4g-v649CGA-px8h-pmwj-q94pCGA-q37g-58x2-mv9xCGA-q3wr-r8c4-h78fCGA-q5wr-cx4j-q4r5CGA-qg78-6r7m-gqwmCGA-qhrm-hmgp-g9fmCGA-qj3c-fg4p-qv68CGA-qmj2-m22c-qx68CGA-qmwf-4fm2-6j2mCGA-r29v-97wh-fg3wCGA-r3rv-8x7f-55p5CGA-r4v5-vx45-rg8hCGA-r764-p624-vvvpCGA-rgr9-rj98-73vxCGA-rhcf-33wr-3h8gCGA-rqpp-pwfx-fpfqCGA-v23x-jqqq-4gm4CGA-vf3g-j42r-394qCGA-vwc9-9q86-rvh9CGA-w58w-v7ww-hhw9CGA-wf74-prhr-892gCGA-wg9j-wrm6-5ccrCGA-wmph-c29c-89w4CGA-wpj2-rvfm-qmrhCGA-wx74-vq2x-8664CGA-wxrx-3x2p-c5m2CGA-wxxv-xwqg-m44jCGA-x3fh-vgwc-9wr4CGA-xw3w-2q66-qf48CGA-xwp6-rm2r-8m8qCGA-2pw3-6v8x-pfpxCGA-hxrw-pvmg-3qr8CGA-26fc-fm54-cjx3CGA-5m98-3hg8-x3h2CGA-78cq-r266-x9v9CGA-7vvh-prxj-8hmmCGA-8m8p-f9r9-pwffCGA-h7f9-mh28-9h9pCGA-hcpg-5rcp-w27cCGA-hq4q-cv65-h4rqCGA-hr3v-76f7-w9vjCGA-hr5q-5mwc-9j4wCGA-jprj-3jm7-3fvwCGA-r83v-g6w2-cmvmCGA-wc64-wp77-prh6CGA-g238-hfm8-445wCGA-xw5r-rj36-2c76CGA-h8gv-9733-hrhhCGA-j9pv-f846-f483CGA-v2gw-mpgm-96gcCGA-xxrv-3q3j-h446CGA-4v8x-mr24-jpc3CGA-8x4j-5mqc-3w4qCGA-g5j3-gp33-rc6p
Advisory lineage Upstream: 0 Downstream: 47
Modified
Published: 01 Sept 2022, 00:00
Last modified:03 Aug 2024, 00:46

Vulnerability Summary

Overall Risk (default)
medium
32/100
CVSS Score
5.3 MEDIUM
v3.1 (nvd)
EPSS Score
3.19% LOW
3% probability +3.03%
KEV
Not listed
Ransomware
No reports
Public exploits
2 found
Dark Web
Not detected

Timeline

01 Sept 2022, 00:00
Published
Vulnerability first disclosed
03 Aug 2024, 00:46
Last Modified
Vulnerability information updated

Description

An issue was found in the Linux kernel in nf_conntrack_irc where the message handling can be confused and incorrectly matches the message. A firewall may be able to be bypassed when users are using unencrypted IRC with nf_conntrack_irc configured.

CVSS Metrics

  • v4.0MEDIUMScore: 5.3CVSS:4.0/AV:N/AC:L/AT:N/PR:N/UI:P/VC:L/VI:L/VA:N/SC:N/SI:N/SA:N
  • v3.1MEDIUMScore: 5.3CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:L/A:N

EPSS Trends

Current EPSS score: 3.19% Percentile: 88%

Techniques & Countermeasures

  • CWE-923Improper Restriction of Communication Channel to Intended Endpoints

    The product establishes a communication channel to (or from) an endpoint for privileged or protected operations, but it does not properly ensure that it is communicating with the correct endpoint.

Affected Systems

  • chainguardhyperv-daemons-6.18

    < 0

  • chainguardhyperv-daemons-generic

    < 0

  • chainguardlinux-aws-6.12

    < 6.12.65-r0 | < 0

  • chainguardlinux-aws-6.12-boot-installed

    < 0

  • chainguardlinux-aws-6.12-fips-boot-installed

    < 0

  • chainguardlinux-aws-6.12-headers

    < 0

  • chainguardlinux-aws-6.12-modules

    < 0

  • chainguardlinux-aws-6.18

    < 6.18.10-r0 | < 0

  • chainguardlinux-aws-6.18-boot-installed

    < 0

  • chainguardlinux-aws-6.18-fips-boot-installed

    < 0

  • chainguardlinux-aws-6.18-headers

    < 0

  • chainguardlinux-aws-6.18-modules

    < 0

  • chainguardlinux-aws-generic

    < 0 | < 6.18.5-r0

  • chainguardlinux-aws-generic-boot-installed

    < 0

  • chainguardlinux-aws-generic-fips-boot-installed

    < 0

  • chainguardlinux-aws-generic-headers

    < 0

  • chainguardlinux-aws-generic-modules

    < 0

  • chainguardlinux-azure-6.12

    < 6.12.65-r1 | < 0

  • chainguardlinux-azure-6.18

    < 0

  • chainguardlinux-azure-6.18-boot-installed

    < 0

  • chainguardlinux-azure-6.18-fips-boot-installed

    < 0

  • chainguardlinux-azure-6.18-headers

    < 0

  • chainguardlinux-azure-6.18-modules

    < 0

  • chainguardlinux-azure-generic

    < 0 | < 6.18.5-r0

  • chainguardlinux-azure-generic-boot-installed

    < 0

  • chainguardlinux-azure-generic-fips-boot-installed

    < 0

  • chainguardlinux-azure-generic-headers

    < 0

  • chainguardlinux-azure-generic-modules

    < 0

  • chainguardlinux-desktop-6.18

    all

  • chainguardlinux-desktop-6.18-bootc

    all

  • chainguardlinux-desktop-6.18-bootc-boot-installed

    all

  • chainguardlinux-desktop-6.18-headers

    all

  • chainguardlinux-desktop-6.18-modules

    all

  • chainguardlinux-desktop-7.2

    all

  • chainguardlinux-desktop-7.2-bootc

    all

  • chainguardlinux-desktop-7.2-modules

    all

  • chainguardlinux-firecracker-6.18

    all

  • chainguardlinux-gcp-6.12

    < 6.12.65-r0 | < 0

  • chainguardlinux-gcp-6.18

    < 0 | < 6.18.10-r0

  • chainguardlinux-gcp-6.18-boot-installed

    < 0

  • chainguardlinux-gcp-6.18-fips-boot-installed

    < 0

  • chainguardlinux-gcp-6.18-headers

    < 0

  • chainguardlinux-gcp-6.18-modules

    < 0

  • chainguardlinux-gcp-generic

    < 0 | < 6.18.5-r0

  • chainguardlinux-gcp-generic-boot-installed

    < 0

  • chainguardlinux-gcp-generic-fips-boot-installed

    < 0

  • chainguardlinux-gcp-generic-headers

    < 0

  • chainguardlinux-gcp-generic-modules

    < 0

  • chainguardlinux-qemu-6.12

    < 6.12.71-r0

  • chainguardlinux-qemu-6.18

    < 6.18.10-r0

Showing first 50 affected entries in server-rendered view.

References (34)