icon

We found results for “

CVE-2022-4744

Good to know:

icon

Date: March 29, 2023

A double-free flaw was found in the Linux kernel’s TUN/TAP device driver functionality in how a user registers the device when the register_netdevice function fails (NETDEV_REGISTER notifier). This flaw allows a local user to crash or potentially escalate their privileges on the system.

Language: C

Severity Score

Severity Score

Weakness Type (CWE)

Double Free

CWE-415

Improper Cleanup on Thrown Exception

CWE-460

Top Fix

icon

Upgrade Version

Upgrade to version v5.10.136,v5.15.12,v5.16-rc7

Learn More

CVSS v3.1

Base Score:
Attack Vector (AV): LOCAL
Attack Complexity (AC): LOW
Privileges Required (PR): LOW
User Interaction (UI): NONE
Scope (S): UNCHANGED
Confidentiality (C): HIGH
Integrity (I): HIGH
Availability (A): HIGH

Do you need more information?

Contact Us