CVE-2022-0171

Source
https://cve.org/CVERecord?id=CVE-2022-0171
Import Source
https://storage.googleapis.com/cve-osv-conversion/osv-output/CVE-2022-0171.json
JSON Data
https://api.osv.dev/v1/vulns/CVE-2022-0171
Downstream
Published
2022-08-26T00:00:00Z
Modified
2026-07-15T01:49:05.220957276Z
Summary
[none]
Details

A flaw was found in the Linux kernel. The existing KVM SEV API has a vulnerability that allows a non-root (host) user-level application to crash the host kernel by creating a confidential guest VM instance in AMD CPU that supports Secure Encrypted Virtualization (SEV).

Database specific
{
    "cwe_ids": [
        "CWE-459"
    ],
    "cna_assigner": "redhat",
    "osv_generated_from": "https://github.com/CVEProject/cvelistV5/tree/main/cves/2022/0xxx/CVE-2022-0171.json"
}
References

Affected packages

Git / git.kernel.org/pub/scm/linux/kernel/git/torvalds/linux.git

Affected ranges

Type
GIT
Repo
https://git.kernel.org/pub/scm/linux/kernel/git/torvalds/linux.git
Events
Introduced
af2d861d4cd2a4da5137f795ee3509e6f944a25b
Last affected
af2d861d4cd2a4da5137f795ee3509e6f944a25b
Database specific
{
    "extracted_events": [
        {
            "introduced": "Fixed in kernel 5.18-rc4"
        },
        {
            "last_affected": "Fixed in kernel 5.18-rc4"
        }
    ],
    "source": "AFFECTED_FIELD"
}

Affected versions

Fixed in kernel 5.*
Fixed in kernel 5.18-rc4
v5.*
v5.18-rc4

Database specific

source
"https://storage.googleapis.com/cve-osv-conversion/osv-output/CVE-2022-0171.json"