Skip to content

kernel CVE-2022-36123

Moderate
arnaldo2792 published GHSA-g4hw-7h5w-ccfw Oct 13, 2022

Package

kernel-5.10 (bottlerocket)

Affected versions

< 1.10.0

Patched versions

1.10.0
kernel-5.15 (bottlerocket)
< 1.10.0
1.10.0

Description

The Linux kernel before 5.18.13 lacks a certain clear operation for the block starting symbol (.bss). This allows Xen PV guest OS users to cause a denial of service or gain privileges.

Severity

Moderate

CVE ID

CVE-2022-36123

Weaknesses

No CWEs