Description
A use-after-free flaw was found in the Linux kernel MCTP (Management Component Transport Protocol) functionality. This issue occurs when a user simultaneously calls DROPTAG ioctl and socket close happens, which could allow a local user to crash the system or potentially escalate their privileges on the system.
No analysis available yet.
Remediation
No remediation available yet.
Tracking
Sign in to view the affected projects.
Advisories
| Source | ID | Title |
|---|---|---|
EUVD |
EUVD-2022-43307 | A use-after-free flaw was found in the Linux kernel MCTP (Management Component Transport Protocol) functionality. This issue occurs when a user simultaneously calls DROPTAG ioctl and socket close happens, which could allow a local user to crash the system or potentially escalate their privileges on the system. |
Ubuntu USN |
USN-5793-1 | Linux kernel vulnerabilities |
Ubuntu USN |
USN-5793-2 | Linux kernel (Azure) vulnerabilities |
Ubuntu USN |
USN-5793-3 | Linux kernel vulnerabilities |
Ubuntu USN |
USN-5793-4 | Linux kernel (IBM) vulnerabilities |
References
History
Tue, 08 Apr 2025 18:15:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Metrics |
ssvc
|
Status: PUBLISHED
Assigner: redhat
Published:
Updated: 2025-04-08T18:03:56.887Z
Reserved: 2022-11-13T00:00:00.000Z
Link: CVE-2022-3977
Updated: 2024-08-03T01:27:53.994Z
Status : Modified
Published: 2023-01-12T19:15:24.327
Modified: 2025-04-08T18:15:44.317
Link: CVE-2022-3977
OpenCVE Enrichment
No data.
Weaknesses
EUVD
Ubuntu USN