Skip to content

kernel CVE-2022-2588

High
rpkelly published GHSA-gwgw-pm3x-5wxg Jan 27, 2023

Package

kernel-5.10 (bottlerocket)

Affected versions

< 1.12.0

Patched versions

1.12.0
kernel-5.15 (bottlerocket)
< 1.12.0
1.12.0

Description

A use-after-free flaw was found in route4_change in the net/sched/cls_route.c filter implementation in the Linux kernel. This flaw allows a local user to crash the system and could possibly lead to local privilege escalation.

Severity

High

CVE ID

CVE-2022-2588

Weaknesses

No CWEs