Svi
Pretraži prema proizvođaču
Pretraži prema CWE oznaci
O usluzi
Pretplate
Jezik
hr
en
CVE-2022-2586 - CERT CVE
CVE-2022-2586
ID
CVE-2022-2586
Sažetak
It was discovered that a nft object or expression could reference a nft set on a different nft table, leading to a use-after-free once that table was deleted.
Reference
https://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2022-2586
https://lore.kernel.org/netfilter-devel/20220809170148.164591-1-cascardo@canonical.com/T/#t
https://ubuntu.com/security/notices/USN-5557-1
https://ubuntu.com/security/notices/USN-5560-1
https://ubuntu.com/security/notices/USN-5560-2
https://ubuntu.com/security/notices/USN-5562-1
https://ubuntu.com/security/notices/USN-5564-1
https://ubuntu.com/security/notices/USN-5565-1
https://ubuntu.com/security/notices/USN-5566-1
https://ubuntu.com/security/notices/USN-5567-1
https://ubuntu.com/security/notices/USN-5582-1
https://www.openwall.com/lists/oss-security/2022/08/09/5
https://www.zerodayinitiative.com/advisories/ZDI-22-1118/
https://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2022-2586
https://lore.kernel.org/netfilter-devel/20220809170148.164591-1-cascardo@canonical.com/T/#t
https://ubuntu.com/security/notices/USN-5557-1
https://ubuntu.com/security/notices/USN-5560-1
https://ubuntu.com/security/notices/USN-5560-2
https://ubuntu.com/security/notices/USN-5562-1
https://ubuntu.com/security/notices/USN-5564-1
https://ubuntu.com/security/notices/USN-5565-1
https://ubuntu.com/security/notices/USN-5566-1
https://ubuntu.com/security/notices/USN-5567-1
https://ubuntu.com/security/notices/USN-5582-1
https://www.openwall.com/lists/oss-security/2022/08/09/5
https://www.vicarius.io/vsociety/posts/use-after-free-vulnerability-linked-chain-between-nft-tables-cve-2022-2586
https://www.zerodayinitiative.com/advisories/ZDI-22-1118/
CVSS
Base:
5.3
Impact:
4.2
Exploitability:
1.0
Pristup
Vektor
Složenost
Autentikacija
LOCAL
HIGH
LOW
Impact
Povjerljivost
Cjelovitost
Dostupnost
NONE
LOW
HIGH
CVSS vektor
CVSS:3.1/AV:L/AC:H/PR:L/UI:N/S:U/C:N/I:L/A:H
Zadnje važnije ažuriranje
19-02-2025 - 19:47
Objavljeno
08-01-2024 - 18:15