kernel CVE-2022-2588
Package
kernel-5.10
(bottlerocket)
Affected versions
< 1.12.0
Patched versions
1.12.0
kernel-5.15
(bottlerocket)
< 1.12.0
1.12.0
A use-after-free flaw was found in route4_change in the net/sched/cls_route.c filter implementation in the Linux kernel. This flaw allows a local user to crash the system and could possibly lead to local privilege escalation.