ZeroHour

CVE-2022-1729

CVSS 3.1
7.0 high
EPSS
<1%p26
Published
()
Modified
Description

A race condition was found the Linux kernel in perf_event_open() which can be exploited by an unprivileged user to gain root privileges. The bug allows to build several exploit primitives such as kernel address information leak, arbitrary execution, etc.

Vendors
linuxnetapp
Products
linux kernel, hci baseboard management controller
Weakness
CWE-366, CWE-362
Vector
CVSS:3.1/AV:L/AC:H/PR:L/UI:N/S:U/C:H/I:H/A:H

In the news

No ingested article mentions this CVE yet.