Skip to content

kernel CVE-2022-1836

Moderate
arnaldo2792 published GHSA-524f-6vx2-fgcj Jun 10, 2022

Package

kernel-5.4 (bottlerocket)

Affected versions

< 1.8.0

Patched versions

1.8.0

Description

The floppy driver in the Linux kernel contained a race condition in some situations, leading to a use-after-free vulnerability. A local attacker could use this to cause a denial of service via system crash or possibly execute arbitrary code.

Severity

Moderate

CVE ID

CVE-2022-1836

Weaknesses

No CWEs