Security Advisory

CVE-2022-0500

CVE vulnerability detail — eXtreme Datacenter Security Operations

Published 2022-03-25 18:03:03
Last updated 2024-08-02 23:32:46
Assigner redhat
State PUBLISHED

Description

A flaw was found in unrestricted eBPF usage by the BPF_BTF_LOAD, leading to a possible out-of-bounds memory write in the Linux kernel’s BPF subsystem due to the way a user loads BTF. This flaw allows a local user to crash or escalate their privileges on the system.