Related Vulnerabilities: CVE-2022-0168  

A denial of service (DOS) issue was found in the Linux kernel’s smb2_ioctl_query_info function in the fs/cifs/smb2ops.c Common Internet File System (CIFS) due to an incorrect return from the memdup_user function. This flaw allows a local, privileged (CAP_SYS_ADMIN) attacker to crash the system.

Severity Unknown

Remote Unknown

Type Unknown

Description

A denial of service (DOS) issue was found in the Linux kernel’s smb2_ioctl_query_info function in the fs/cifs/smb2ops.c Common Internet File System (CIFS) due to an incorrect return from the memdup_user function. This flaw allows a local, privileged (CAP_SYS_ADMIN) attacker to crash the system.

AVG-2701 linux-lts 5.15.14-1 High Vulnerable

AVG-2700 linux-hardened 5.16.20.hardened1-1 5.17.5.hardened1-1 High Fixed

AVG-2699 linux-zen 5.17.2.zen3-1 5.17.3.zen1-1 High Fixed

AVG-2698 linux 5.17.2.arch4-1 5.17.3.arch4-1 High Fixed

https://bugzilla.redhat.com/show_bug.cgi?id=2037386

TODO