← back
CVE-2022-0492

CVE-2022-0492

CVSS 7.8 HIGHEPSS 5.5%● KEVCWE-287
Vexday Risk Score
86Fix now
SSVC decision (CISA)
Act
Exploitation + impact → act immediately
CVSS 7.8EPSS 5.5%KEV simPoC públicaNuclei Metasploit simPatch referenciado
Lifecycle
04 Feb 2022Metasploit module available
28 Feb 2022Public PoC
03 Mar 2022Published on NVD
02 Jun 2026Active exploitation (CISA KEV)
Recommendation: Patch as soon as possible — active exploitation confirmed.
In short

A flaw in the Linux kernel's cgroup feature allows an attacker to bypass security boundaries (namespace isolation) and gain elevated privileges. This happens when using cgroups v1 release_agent, which is a Linux system feature that normally should be restricted.

Technical detail

CVE-2022-0492 is a privilege escalation vulnerability in kernel/cgroup/cgroup-v1.c affecting cgroups v1 release_agent functionality. An unprivileged user can exploit improper isolation enforcement to escape namespace boundaries and obtain elevated privileges, bypassing intended access controls under specific system configurations.

Summary generated and translated by AI from the official description.
A vulnerability was found in the Linux kernel’s cgroup_release_agent_write in the kernel/cgroup/cgroup-v1.c function. This flaw, under certain circumstances, allows the use of the cgroups v1 release_agent feature to escalate privileges and bypass the namespace isolation unexpectedly.
CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H
Affected products
n/a · kernel
⚠ Public resources, to assess the exposure of systems you control or are authorized to test. Test only with authorization.

Want to know if your infrastructure is exposed to this?

Talk to TrueHacking →