Latest Vulnerabilities and Exploits



CVE ID:

CVE-2022-23222

Details:

kernel/bpf/verifier.c in the Linux kernel through 5.15.14 allows local users to gain privileges because of the availability of pointer arithmetic via certain *_OR_NULL pointer types.

References:

:https://www.openwall.com/lists/oss-security/2022/01/13/1
MLIST:[oss-security] 20220114 Re: Linux Kernel eBPF Improper Input Validation Vulnerability
:http://www.openwall.com/lists/oss-security/2022/01/14/1

ZeroDayLab Assigned Tags:

PRIVILEGE ESCALATION
LOCAL