Description
It was discovered that the cls_route filter implementation in the Linux kernel would not remove an old filter from the hashtable before freeing it if its handle had the value 0.
Exploits (9)
References (15)
Core 15
Core References
Third Party Advisory third-party-advisory
https://ubuntu.com/security/notices/USN-5565-1
Third Party Advisory third-party-advisory
https://ubuntu.com/security/notices/USN-5562-1
Mailing List issue-tracking
https://www.openwall.com/lists/oss-security/2022/08/09/6
Third Party Advisory third-party-advisory
https://ubuntu.com/security/notices/USN-5582-1
Third Party Advisory issue-tracking
https://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2022-2588
Third Party Advisory third-party-advisory
https://ubuntu.com/security/notices/USN-5564-1
Third Party Advisory third-party-advisory
https://ubuntu.com/security/notices/USN-5566-1
Third Party Advisory, VDB Entry issue-tracking
https://www.zerodayinitiative.com/advisories/ZDI-22-1117/
Third Party Advisory third-party-advisory
https://ubuntu.com/security/notices/USN-5588-1
Third Party Advisory third-party-advisory
https://ubuntu.com/security/notices/USN-5560-1
Exploit issue-tracking
https://github.com/Markakd/CVE-2022-2588
Third Party Advisory third-party-advisory
https://ubuntu.com/security/notices/USN-5567-1
Third Party Advisory third-party-advisory
https://ubuntu.com/security/notices/USN-5560-2
Mailing List, Patch issue-tracking
https://lore.kernel.org/netdev/[email protected]/T/#u
Third Party Advisory third-party-advisory
https://ubuntu.com/security/notices/USN-5557-1
Scores
CVSS v3
5.3
EPSS
0.5431
EPSS Percentile
98.0%
Attack Vector
LOCAL
CVSS:3.1/AV:L/AC:H/PR:L/UI:N/S:U/C:N/I:L/A:H
CISA SSVC
Vulnrichment
Exploitation
poc
Automatable
no
Technical Impact
partial
Details
CWE
CWE-415
CWE-416
Status
published
Products (6)
canonical/ubuntu_linux
14.04
canonical/ubuntu_linux
16.04
canonical/ubuntu_linux
18.04
canonical/ubuntu_linux
20.04
canonical/ubuntu_linux
22.04
linux/linux_kernel
< 4.9.326
Published
Jan 08, 2024
Tracked Since
Feb 18, 2026