CVE-2022-48638
MEDIUMLinux Kernel - Info Disclosure
Title source: llmDescription
In the Linux kernel, the following vulnerability has been resolved: cgroup: cgroup_get_from_id() must check the looked-up kn is a directory cgroup has to be one kernfs dir, otherwise kernel panic is caused, especially cgroup id is provide from userspace.
Scores
CVSS v3
5.3
EPSS
0.0002
EPSS Percentile
4.4%
Attack Vector
LOCAL
CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:L/I:L/A:L
Classification
Status
published
Affected Products (9)
linux/linux_kernel
< 5.15.72
linux/linux_kernel
linux/linux_kernel
linux/linux_kernel
linux/linux_kernel
linux/linux_kernel
linux/linux_kernel
linux/Kernel
< 5.15.72linux
linux/Kernel
< 5.19.12linux
Timeline
Published
Apr 28, 2024
Tracked Since
Feb 18, 2026