CVE-2022-30594

Aliases:UBUNTU-CVE-2022-30594DEBIAN-CVE-2022-30594
Advisory lineage Upstream: 0 Downstream: 46
Modified
Published: 12 May 2022, 00:00
Last modified:03 Aug 2024, 06:56

Vulnerability Summary

Overall Risk (default)
medium
41/100
CVSS Score
7.8 HIGH
v3.1 (nvd)
EPSS Score
0.8% LOW
1% probability +0.77%
KEV
Not listed
Ransomware
No reports
Public exploits
1 found
Dark Web
Not detected

Timeline

12 May 2022, 00:00
Published
Vulnerability first disclosed
03 Aug 2024, 06:56
Last Modified
Vulnerability information updated

Description

The Linux kernel before 5.17.2 mishandles seccomp permissions. The PTRACE_SEIZE code path allows attackers to bypass intended restrictions on setting the PT_SUSPEND_SECCOMP flag.

CVSS Metrics

  • v4.0MEDIUMScore: 4.8CVSS:4.0/AV:L/AC:L/AT:N/PR:L/UI:N/VC:N/VI:L/VA:N/SC:N/SI:N/SA:N
  • v3.1HIGHScore: 7.8CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H
  • v2.0MEDIUMScore: 4.4AV:L/AC:M/Au:N/C:P/I:P/A:P

EPSS Trends

Current EPSS score: 0.80% Percentile: 55%

Techniques & Countermeasures

  • CWE-862Missing Authorization

    The product does not perform an authorization check when an actor attempts to access a resource or perform an action.

Affected Systems

  • debianlinux

    < 5.10.113-1 | < 5.17.3-1 | < 5.17.3-1 | < 5.17.3-1

  • ubuntulinux

    < 4.4.0-227.261 | < 4.15.0-180.189 | < 5.4.0-113.127 | < 5.15.0-33.34

  • ubuntulinux-aws

    < 4.4.0-1107.113 | < 4.4.0-1143.158 | < 4.15.0-1130.139 | < 5.4.0-1075.80 | < 5.15.0-1008.10

  • ubuntulinux-aws-5.0

    all

  • ubuntulinux-aws-5.11

    all

  • ubuntulinux-aws-5.13

    < 5.13.0-1025.27~20.04.1

  • ubuntulinux-aws-5.3

    all

  • ubuntulinux-aws-5.4

    < 5.4.0-1075.80~18.04.1

  • ubuntulinux-aws-5.8

    all

  • ubuntulinux-aws-fips

    < 4.15.0-2069.72 | all | < 5.4.0-1078.84+fips1

  • ubuntulinux-aws-hwe

    < 4.15.0-1130.139~16.04.1

  • ubuntulinux-azure

    < 4.15.0-1139.152~14.04.1 | < 4.15.0-1139.152~16.04.1 | all | < 5.4.0-1080.83 | < 5.15.0-1007.8

  • ubuntulinux-azure-4.15

    < 4.15.0-1139.152

  • ubuntulinux-azure-5.11

    all

  • ubuntulinux-azure-5.13

    < 5.13.0-1025.29~20.04.1

  • ubuntulinux-azure-5.3

    all

  • ubuntulinux-azure-5.4

    < 5.4.0-1080.83~18.04.2

  • ubuntulinux-azure-5.8

    all

  • ubuntulinux-azure-edge

    all

  • ubuntulinux-azure-fips

    < 4.15.0-2050.54 | all | < 5.4.0-1080.83+fips1

  • ubuntulinux-bluefield

    all | < 5.4.0-1036.39

  • ubuntulinux-dell300x

    < 4.15.0-1047.52

  • ubuntulinux-fips

    < 4.4.0-1077.84 | all | < 4.15.0-1087.96 | < 5.4.0-1051.57

  • ubuntulinux-gcp

    < 4.15.0-1124.138~16.04.1 | all | < 5.4.0-1075.80 | < 5.15.0-1005.8

  • ubuntulinux-gcp-4.15

    < 4.15.0-1124.138

  • ubuntulinux-gcp-5.11

    all

  • ubuntulinux-gcp-5.13

    < 5.13.0-1027.32~20.04.1

  • ubuntulinux-gcp-5.3

    all

  • ubuntulinux-gcp-5.4

    < 5.4.0-1075.80~18.04.1

  • ubuntulinux-gcp-5.8

    all

  • ubuntulinux-gcp-fips

    < 4.15.0-2034.37 | all | < 5.4.0-1075.80+fips1

  • ubuntulinux-gke

    < 5.4.0-1072.77 | < 5.15.0-1005.6

  • ubuntulinux-gke-4.15

    all

  • ubuntulinux-gke-5.4

    < 5.4.0-1072.77~18.04.1

  • ubuntulinux-gkeop

    < 5.4.0-1043.44

  • ubuntulinux-gkeop-5.4

    < 5.4.0-1043.44~18.04.1

  • ubuntulinux-hwe

    < 4.15.0-180.189~16.04.1 | all

  • ubuntulinux-hwe-5.11

    all

  • ubuntulinux-hwe-5.13

    < 5.13.0-44.49~20.04.1

  • ubuntulinux-hwe-5.4

    < 5.4.0-113.127~18.04.1

  • ubuntulinux-hwe-5.8

    all

  • ubuntulinux-hwe-edge

    all | all

  • ubuntulinux-ibm

    < 5.4.0-1023.25 | < 5.15.0-1004.4

  • ubuntulinux-ibm-5.4

    < 5.4.0-1023.25~18.04.1

  • ubuntulinux-intel-5.13

    all

  • ubuntulinux-intel-iot-realtime

    all

  • ubuntulinux-intel-iotg

    < 5.15.0-1008.11

  • ubuntulinux-intel-iotg-5.15

    < 5.15.0-1008.11~20.04.1

  • ubuntulinux-iot

    < 5.4.0-1004.6

  • ubuntulinux-kvm

    < 4.4.0-1108.118 | < 4.15.0-1116.119 | < 5.4.0-1065.68 | < 5.15.0-1007.7

Showing first 50 affected entries in server-rendered view.

References (18)