CVE-2022-2602
CVE-2022-2602
Vexday Risk Score
13Low
SSVC decision (CISA)
Track
No exploitation signal → monitor
CVSS 5.3EPSS 1.3%KEV nãoPoC —Nuclei —Metasploit —Patch —
Lifecycle
08 Jan 2024Published on NVD
Recommendation: Monitor — no exploitation signal at the moment.
io_uring UAF, Unix SCM garbage collection
CVSS:3.1/AV:L/AC:H/PR:L/UI:N/S:U/C:N/I:L/A:H
Affected products
The Linux Kernel Organization · linuxWant to know if your infrastructure is exposed to this?
Talk to TrueHacking →References
http://packetstormsecurity.com/files/176533/Linux-Broken-Unix-GC-Interaction-Use-After-Free.htmlhttps://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2022-2602https://ubuntu.com/security/notices/USN-5691-1https://ubuntu.com/security/notices/USN-5692-1https://ubuntu.com/security/notices/USN-5693-1https://ubuntu.com/security/notices/USN-5700-1https://ubuntu.com/security/notices/USN-5752-1