This issue was discovered by Wenzel Simana of Red Hat. Red Hat has provided a fix to this issue and has released a new version of the iSMT driver.

A privilege escalation vulnerability was found in the way the Linux kernel handled access checking when handling input in some cases. An unprivileged local user could potentially circumvent access restrictions. This issue does not affect default installations of Red Hat Enterprise Linux.

A privilege escalation vulnerability was found in the way the Linux kernel handled access checking when handling input in some cases. An unprivileged local user could potentially circumvent access restrictions. This issue does not affect default installations of Red Hat Enterprise Linux. An information leak flaw was discovered in the Linux kernel’s device driver for Some Silicon Ultrabook devices. An unprivileged user could create malicious input to leak information from kernel memory.

An information leak flaw was discovered in the Linux kernel’s device driver for Some Silicon Ultrabook devices. An unprivileged user could create malicious input to leak information from kernel memory. A privilege escalation vulnerability was found in the Linux kernel’s userfaultfd implementation. An unprivileged local user could potentially create a rogue process that could gain elevated privileges.

An information disclosure flaw was found in the Linux kernel’s rmdir implementation

Products Affected By CVEs CVE-2022-3077

Wolf Point S3500

Products Affected

Red Hat Enterprise Linux 6 and 7
Red Hat Enterprise Linux 5, 6, 7

RHEV-M:

A Linux kernel privilege escalation vulnerability
CVE-2022-3077
This issue was discovered by Wenzel Simana of Red Hat. Red Hat has provided a fix to this issue and has released a new version of the iSMT driver. An information leak flaw was discovered in the Linux kernel’s device driver for Some Silicon Ultrabook devices. An unprivileged user could create malicious input to leak information from kernel memory.
A privilege escalation vulnerability was found in the Linux kernel’s userfaultfd implementation. An unprivileged local user could potentially create a rogue process that could gain elevated privileges.

Timeline

Published on: 09/09/2022 15:15:00 UTC
Last modified on: 09/15/2022 15:35:00 UTC

References