Wind River Support Network

HomeDefectsLIN1021-3113
Fixed

LIN1021-3113 : Security Advisory - linux - CVE-2022-0494

Created: Mar 22, 2022    Updated: May 26, 2022
Resolved Date: May 26, 2022
Found In Version: 10.21.20.1
Fix Version: 10.21.20.13
Severity: Standard
Applicable for: Wind River Linux LTS 21
Component/s: Kernel

Description

A kernel information leak flaw was identified in the scsi_ioctl function in drivers/scsi/scsi_ioctl.c in the Linux kernel. This flaw allows a local attacker with a special user privilege (CAP_SYS_ADMIN or CAP_SYS_RAWIO) to create issues with confidentiality.

https://nvd.nist.gov/vuln/detail/CVE-2022-0494

CVEs


Live chat
Online