Vulnerability Intelligence Report
CVE-2022-25636
net/netfilter/nf_dup_netdev.c in the Linux kernel 5.4 through 5.6.10 allows local users to gain privileges because of a heap out-of-bounds write. This is related to nf_tables_offload.
No Active Exploit Signals
CVSS Base Score
7.8
HIGH
EPSS Probability:2.63%
Executive Threat Verdict
Evaluating...
Evaluating Threat Landscape...
Assessing known weaponization, exploitation telemetry, and federal advisories.
Attack Surface
—
Authentication
—
Weaponization
—
SSVC Action
—
Affected Products & Versions
| Vendor | Product | Affected Versions |
|---|---|---|
| linux | linux_kernel | all |
| debian | debian_linux | 11.0 |
| netapp | h300e | all |
| netapp | h300s | all |
| netapp | h410c | all |
| netapp | h410s | all |
| netapp | h500e | all |
| netapp | h500s | all |
| netapp | h700e | all |
| netapp | h700s | all |
| oracle | communications_cloud_native_core_binding_support_function | 22.1.3 |
| oracle | communications_cloud_native_core_network_exposure_function | 22.1.1 |
| oracle | communications_cloud_native_core_policy | 22.2.0 |
References & Technical Advisories
No reference links found.
Threat Intelligence Signals
EPSS Score
2.633%
GitHub Advisory
Identity & Timeline
| Status | PUBLISHED |
| Assigning Authority | MITRE Corporation · N/A · USA |
| Reserved | 2022-02-22T00:00:00 |
| Published | 2022-02-22T01:41:05 |
| Last Updated | 2024-08-03T04:42:50 |
Community Chatter & Buzz