CVE-2022-29581

HIGH

Linux Kernel < 4.14.278 - Privilege Escalation

Title source: rule

Description

Improper Update of Reference Count vulnerability in net/sched of Linux Kernel allows local attacker to cause privilege escalation to root. This issue affects: Linux Kernel versions prior to 5.18; version 4.14 and later versions.

Exploits (3)

nomisec WRITEUP
by nidhihcl · poc
https://github.com/nidhihcl/linux-4.19.72_CVE-2022-29581
nomisec WRITEUP
by Nidhi77777 · poc
https://github.com/Nidhi77777/linux-4.19.72_CVE-2022-29581

Scores

CVSS v3 7.8
EPSS 0.0019
EPSS Percentile 40.1%
Attack Vector LOCAL
CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H

Details

CWE
CWE-911
Status published
Products (15)
canonical/ubuntu_linux 14.04
canonical/ubuntu_linux 16.04
canonical/ubuntu_linux 18.04
canonical/ubuntu_linux 20.04
canonical/ubuntu_linux 22.04
debian/debian_linux 10.0
linux/linux_kernel 4.14 - 4.14.278
netapp/h300e_firmware
netapp/h300s_firmware
netapp/h410c_firmware
... and 5 more
Published May 17, 2022
Tracked Since Feb 18, 2026