Zhenpeng Lin discovered that the network packet scheduler implementation in the Linux kernel did not properly remove all references to a route filter before freeing it in some situations. A local attacker could use this to cause a denial of service (system crash) or execute arbitrary code. (CVE-2022-2588)
It was discovered that the netfilter subsystem of the Linux kernel did not prevent one nft object from referencing an nft set in another nft table, leading to a use-after-free vulnerability. A local attacker could use this to cause a denial of service (system crash) or execute arbitrary code. (CVE-2022-2586)
It was discovered that the implementation of POSIX timers in the Linux kernel did not properly clean up timers in some situations. A local attacker could use this to cause a denial of service (system crash) or execute arbitrary code. (CVE-2022-2585)
Johannes Wikner and Kaveh Razavi discovered that for some AMD x86-64 processors, the branch predictor could by mis-trained for return instructions in certain circumstances. A local attacker could possibly use this to expose sensitive information. (CVE-2022-29900)
Johannes Wikner and Kaveh Razavi discovered that for some Intel x86-64 processors, the Linux kernel's protections against speculative branch target injection attacks were insufficient in some circumstances. A local attacker could possibly use this to expose sensitive information. (CVE-2022-29901)
{
"binaries": [
{
"binary_version": "5.15.0-46.49~20.04.1",
"binary_name": "linux-buildinfo-5.15.0-46-generic"
},
{
"binary_version": "5.15.0-46.49~20.04.1",
"binary_name": "linux-buildinfo-5.15.0-46-generic-64k"
},
{
"binary_version": "5.15.0-46.49~20.04.1",
"binary_name": "linux-buildinfo-5.15.0-46-generic-lpae"
},
{
"binary_version": "5.15.0-46.49~20.04.1",
"binary_name": "linux-cloud-tools-5.15.0-46-generic"
},
{
"binary_version": "5.15.0-46.49~20.04.1",
"binary_name": "linux-headers-5.15.0-46-generic"
},
{
"binary_version": "5.15.0-46.49~20.04.1",
"binary_name": "linux-headers-5.15.0-46-generic-64k"
},
{
"binary_version": "5.15.0-46.49~20.04.1",
"binary_name": "linux-headers-5.15.0-46-generic-lpae"
},
{
"binary_version": "5.15.0-46.49~20.04.1",
"binary_name": "linux-hwe-5.15-cloud-tools-5.15.0-46"
},
{
"binary_version": "5.15.0-46.49~20.04.1",
"binary_name": "linux-hwe-5.15-cloud-tools-common"
},
{
"binary_version": "5.15.0-46.49~20.04.1",
"binary_name": "linux-hwe-5.15-headers-5.15.0-46"
},
{
"binary_version": "5.15.0-46.49~20.04.1",
"binary_name": "linux-hwe-5.15-source-5.15.0"
},
{
"binary_version": "5.15.0-46.49~20.04.1",
"binary_name": "linux-hwe-5.15-tools-5.15.0-46"
},
{
"binary_version": "5.15.0-46.49~20.04.1",
"binary_name": "linux-hwe-5.15-tools-common"
},
{
"binary_version": "5.15.0-46.49~20.04.1",
"binary_name": "linux-hwe-5.15-tools-host"
},
{
"binary_version": "5.15.0-46.49~20.04.1",
"binary_name": "linux-image-5.15.0-46-generic"
},
{
"binary_version": "5.15.0-46.49~20.04.1",
"binary_name": "linux-image-5.15.0-46-generic-lpae"
},
{
"binary_version": "5.15.0-46.49~20.04.1",
"binary_name": "linux-image-unsigned-5.15.0-46-generic"
},
{
"binary_version": "5.15.0-46.49~20.04.1",
"binary_name": "linux-image-unsigned-5.15.0-46-generic-64k"
},
{
"binary_version": "5.15.0-46.49~20.04.1",
"binary_name": "linux-modules-5.15.0-46-generic"
},
{
"binary_version": "5.15.0-46.49~20.04.1",
"binary_name": "linux-modules-5.15.0-46-generic-64k"
},
{
"binary_version": "5.15.0-46.49~20.04.1",
"binary_name": "linux-modules-5.15.0-46-generic-lpae"
},
{
"binary_version": "5.15.0-46.49~20.04.1",
"binary_name": "linux-modules-extra-5.15.0-46-generic"
},
{
"binary_version": "5.15.0-46.49~20.04.1",
"binary_name": "linux-modules-iwlwifi-5.15.0-46-generic"
},
{
"binary_version": "5.15.0-46.49~20.04.1",
"binary_name": "linux-tools-5.15.0-46-generic"
},
{
"binary_version": "5.15.0-46.49~20.04.1",
"binary_name": "linux-tools-5.15.0-46-generic-64k"
},
{
"binary_version": "5.15.0-46.49~20.04.1",
"binary_name": "linux-tools-5.15.0-46-generic-lpae"
}
],
"availability": "No subscription required"
}
{
"ecosystem": "Ubuntu:20.04:LTS",
"cves": [
{
"id": "CVE-2022-2585",
"severity": [
{
"type": "CVSS_V3",
"score": "CVSS:3.1/AV:L/AC:H/PR:L/UI:N/S:U/C:N/I:L/A:H"
},
{
"type": "CVSS_V3",
"score": "CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H"
},
{
"type": "Ubuntu",
"score": "high"
}
]
},
{
"id": "CVE-2022-2586",
"severity": [
{
"type": "CVSS_V3",
"score": "CVSS:3.1/AV:L/AC:H/PR:L/UI:N/S:U/C:N/I:L/A:H"
},
{
"type": "CVSS_V3",
"score": "CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H"
},
{
"type": "Ubuntu",
"score": "high"
}
]
},
{
"id": "CVE-2022-2588",
"severity": [
{
"type": "CVSS_V3",
"score": "CVSS:3.1/AV:L/AC:H/PR:L/UI:N/S:U/C:N/I:L/A:H"
},
{
"type": "CVSS_V3",
"score": "CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H"
},
{
"type": "Ubuntu",
"score": "high"
}
]
},
{
"id": "CVE-2022-29900",
"severity": [
{
"type": "CVSS_V3",
"score": "CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:C/C:H/I:N/A:N"
},
{
"type": "Ubuntu",
"score": "medium"
}
]
},
{
"id": "CVE-2022-29901",
"severity": [
{
"type": "CVSS_V3",
"score": "CVSS:3.1/AV:L/AC:H/PR:L/UI:N/S:C/C:H/I:N/A:N"
},
{
"type": "CVSS_V3",
"score": "CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:C/C:H/I:N/A:N"
},
{
"type": "Ubuntu",
"score": "medium"
}
]
}
]
}
{
"binaries": [
{
"binary_version": "5.15.0-46.49~20.04.1",
"binary_name": "linux-buildinfo-5.15.0-46-lowlatency"
},
{
"binary_version": "5.15.0-46.49~20.04.1",
"binary_name": "linux-buildinfo-5.15.0-46-lowlatency-64k"
},
{
"binary_version": "5.15.0-46.49~20.04.1",
"binary_name": "linux-cloud-tools-5.15.0-46-lowlatency"
},
{
"binary_version": "5.15.0-46.49~20.04.1",
"binary_name": "linux-headers-5.15.0-46-lowlatency"
},
{
"binary_version": "5.15.0-46.49~20.04.1",
"binary_name": "linux-headers-5.15.0-46-lowlatency-64k"
},
{
"binary_version": "5.15.0-46.49~20.04.1",
"binary_name": "linux-image-unsigned-5.15.0-46-lowlatency"
},
{
"binary_version": "5.15.0-46.49~20.04.1",
"binary_name": "linux-image-unsigned-5.15.0-46-lowlatency-64k"
},
{
"binary_version": "5.15.0-46.49~20.04.1",
"binary_name": "linux-lowlatency-hwe-5.15-cloud-tools-5.15.0-46"
},
{
"binary_version": "5.15.0-46.49~20.04.1",
"binary_name": "linux-lowlatency-hwe-5.15-cloud-tools-common"
},
{
"binary_version": "5.15.0-46.49~20.04.1",
"binary_name": "linux-lowlatency-hwe-5.15-headers-5.15.0-46"
},
{
"binary_version": "5.15.0-46.49~20.04.1",
"binary_name": "linux-lowlatency-hwe-5.15-tools-5.15.0-46"
},
{
"binary_version": "5.15.0-46.49~20.04.1",
"binary_name": "linux-lowlatency-hwe-5.15-tools-common"
},
{
"binary_version": "5.15.0-46.49~20.04.1",
"binary_name": "linux-lowlatency-hwe-5.15-tools-host"
},
{
"binary_version": "5.15.0-46.49~20.04.1",
"binary_name": "linux-modules-5.15.0-46-lowlatency"
},
{
"binary_version": "5.15.0-46.49~20.04.1",
"binary_name": "linux-modules-5.15.0-46-lowlatency-64k"
},
{
"binary_version": "5.15.0-46.49~20.04.1",
"binary_name": "linux-modules-iwlwifi-5.15.0-46-lowlatency"
},
{
"binary_version": "5.15.0-46.49~20.04.1",
"binary_name": "linux-tools-5.15.0-46-lowlatency"
},
{
"binary_version": "5.15.0-46.49~20.04.1",
"binary_name": "linux-tools-5.15.0-46-lowlatency-64k"
}
],
"availability": "No subscription required"
}
{
"ecosystem": "Ubuntu:20.04:LTS",
"cves": [
{
"id": "CVE-2022-2585",
"severity": [
{
"type": "CVSS_V3",
"score": "CVSS:3.1/AV:L/AC:H/PR:L/UI:N/S:U/C:N/I:L/A:H"
},
{
"type": "CVSS_V3",
"score": "CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H"
},
{
"type": "Ubuntu",
"score": "high"
}
]
},
{
"id": "CVE-2022-2586",
"severity": [
{
"type": "CVSS_V3",
"score": "CVSS:3.1/AV:L/AC:H/PR:L/UI:N/S:U/C:N/I:L/A:H"
},
{
"type": "CVSS_V3",
"score": "CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H"
},
{
"type": "Ubuntu",
"score": "high"
}
]
},
{
"id": "CVE-2022-2588",
"severity": [
{
"type": "CVSS_V3",
"score": "CVSS:3.1/AV:L/AC:H/PR:L/UI:N/S:U/C:N/I:L/A:H"
},
{
"type": "CVSS_V3",
"score": "CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H"
},
{
"type": "Ubuntu",
"score": "high"
}
]
},
{
"id": "CVE-2022-29900",
"severity": [
{
"type": "CVSS_V3",
"score": "CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:C/C:H/I:N/A:N"
},
{
"type": "Ubuntu",
"score": "medium"
}
]
},
{
"id": "CVE-2022-29901",
"severity": [
{
"type": "CVSS_V3",
"score": "CVSS:3.1/AV:L/AC:H/PR:L/UI:N/S:C/C:H/I:N/A:N"
},
{
"type": "CVSS_V3",
"score": "CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:C/C:H/I:N/A:N"
},
{
"type": "Ubuntu",
"score": "medium"
}
]
}
]
}
{
"binaries": [
{
"binary_version": "5.15.0-46.49",
"binary_name": "linux-buildinfo-5.15.0-46-generic"
},
{
"binary_version": "5.15.0-46.49",
"binary_name": "linux-buildinfo-5.15.0-46-generic-64k"
},
{
"binary_version": "5.15.0-46.49",
"binary_name": "linux-buildinfo-5.15.0-46-generic-lpae"
},
{
"binary_version": "5.15.0-46.49",
"binary_name": "linux-cloud-tools-5.15.0-46"
},
{
"binary_version": "5.15.0-46.49",
"binary_name": "linux-cloud-tools-5.15.0-46-generic"
},
{
"binary_version": "5.15.0-46.49",
"binary_name": "linux-cloud-tools-common"
},
{
"binary_version": "5.15.0-46.49",
"binary_name": "linux-headers-5.15.0-46"
},
{
"binary_version": "5.15.0-46.49",
"binary_name": "linux-headers-5.15.0-46-generic"
},
{
"binary_version": "5.15.0-46.49",
"binary_name": "linux-headers-5.15.0-46-generic-64k"
},
{
"binary_version": "5.15.0-46.49",
"binary_name": "linux-headers-5.15.0-46-generic-lpae"
},
{
"binary_version": "5.15.0-46.49",
"binary_name": "linux-image-5.15.0-46-generic"
},
{
"binary_version": "5.15.0-46.49",
"binary_name": "linux-image-5.15.0-46-generic-lpae"
},
{
"binary_version": "5.15.0-46.49",
"binary_name": "linux-image-unsigned-5.15.0-46-generic"
},
{
"binary_version": "5.15.0-46.49",
"binary_name": "linux-image-unsigned-5.15.0-46-generic-64k"
},
{
"binary_version": "5.15.0-46.49",
"binary_name": "linux-libc-dev"
},
{
"binary_version": "5.15.0-46.49",
"binary_name": "linux-modules-5.15.0-46-generic"
},
{
"binary_version": "5.15.0-46.49",
"binary_name": "linux-modules-5.15.0-46-generic-64k"
},
{
"binary_version": "5.15.0-46.49",
"binary_name": "linux-modules-5.15.0-46-generic-lpae"
},
{
"binary_version": "5.15.0-46.49",
"binary_name": "linux-modules-extra-5.15.0-46-generic"
},
{
"binary_version": "5.15.0-46.49",
"binary_name": "linux-modules-iwlwifi-5.15.0-46-generic"
},
{
"binary_version": "5.15.0-46.49",
"binary_name": "linux-source-5.15.0"
},
{
"binary_version": "5.15.0-46.49",
"binary_name": "linux-tools-5.15.0-46"
},
{
"binary_version": "5.15.0-46.49",
"binary_name": "linux-tools-5.15.0-46-generic"
},
{
"binary_version": "5.15.0-46.49",
"binary_name": "linux-tools-5.15.0-46-generic-64k"
},
{
"binary_version": "5.15.0-46.49",
"binary_name": "linux-tools-5.15.0-46-generic-lpae"
},
{
"binary_version": "5.15.0-46.49",
"binary_name": "linux-tools-common"
},
{
"binary_version": "5.15.0-46.49",
"binary_name": "linux-tools-host"
}
],
"availability": "No subscription required"
}
{
"ecosystem": "Ubuntu:22.04:LTS",
"cves": [
{
"id": "CVE-2022-2585",
"severity": [
{
"type": "CVSS_V3",
"score": "CVSS:3.1/AV:L/AC:H/PR:L/UI:N/S:U/C:N/I:L/A:H"
},
{
"type": "CVSS_V3",
"score": "CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H"
},
{
"type": "Ubuntu",
"score": "high"
}
]
},
{
"id": "CVE-2022-2586",
"severity": [
{
"type": "CVSS_V3",
"score": "CVSS:3.1/AV:L/AC:H/PR:L/UI:N/S:U/C:N/I:L/A:H"
},
{
"type": "CVSS_V3",
"score": "CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H"
},
{
"type": "Ubuntu",
"score": "high"
}
]
},
{
"id": "CVE-2022-2588",
"severity": [
{
"type": "CVSS_V3",
"score": "CVSS:3.1/AV:L/AC:H/PR:L/UI:N/S:U/C:N/I:L/A:H"
},
{
"type": "CVSS_V3",
"score": "CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H"
},
{
"type": "Ubuntu",
"score": "high"
}
]
},
{
"id": "CVE-2022-29900",
"severity": [
{
"type": "CVSS_V3",
"score": "CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:C/C:H/I:N/A:N"
},
{
"type": "Ubuntu",
"score": "medium"
}
]
},
{
"id": "CVE-2022-29901",
"severity": [
{
"type": "CVSS_V3",
"score": "CVSS:3.1/AV:L/AC:H/PR:L/UI:N/S:C/C:H/I:N/A:N"
},
{
"type": "CVSS_V3",
"score": "CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:C/C:H/I:N/A:N"
},
{
"type": "Ubuntu",
"score": "medium"
}
]
}
]
}
{
"binaries": [
{
"binary_version": "5.15.0-46.49",
"binary_name": "linux-buildinfo-5.15.0-46-lowlatency"
},
{
"binary_version": "5.15.0-46.49",
"binary_name": "linux-buildinfo-5.15.0-46-lowlatency-64k"
},
{
"binary_version": "5.15.0-46.49",
"binary_name": "linux-cloud-tools-5.15.0-46-lowlatency"
},
{
"binary_version": "5.15.0-46.49",
"binary_name": "linux-headers-5.15.0-46-lowlatency"
},
{
"binary_version": "5.15.0-46.49",
"binary_name": "linux-headers-5.15.0-46-lowlatency-64k"
},
{
"binary_version": "5.15.0-46.49",
"binary_name": "linux-image-unsigned-5.15.0-46-lowlatency"
},
{
"binary_version": "5.15.0-46.49",
"binary_name": "linux-image-unsigned-5.15.0-46-lowlatency-64k"
},
{
"binary_version": "5.15.0-46.49",
"binary_name": "linux-lowlatency-cloud-tools-5.15.0-46"
},
{
"binary_version": "5.15.0-46.49",
"binary_name": "linux-lowlatency-cloud-tools-common"
},
{
"binary_version": "5.15.0-46.49",
"binary_name": "linux-lowlatency-headers-5.15.0-46"
},
{
"binary_version": "5.15.0-46.49",
"binary_name": "linux-lowlatency-tools-5.15.0-46"
},
{
"binary_version": "5.15.0-46.49",
"binary_name": "linux-lowlatency-tools-common"
},
{
"binary_version": "5.15.0-46.49",
"binary_name": "linux-lowlatency-tools-host"
},
{
"binary_version": "5.15.0-46.49",
"binary_name": "linux-modules-5.15.0-46-lowlatency"
},
{
"binary_version": "5.15.0-46.49",
"binary_name": "linux-modules-5.15.0-46-lowlatency-64k"
},
{
"binary_version": "5.15.0-46.49",
"binary_name": "linux-modules-iwlwifi-5.15.0-46-lowlatency"
},
{
"binary_version": "5.15.0-46.49",
"binary_name": "linux-tools-5.15.0-46-lowlatency"
},
{
"binary_version": "5.15.0-46.49",
"binary_name": "linux-tools-5.15.0-46-lowlatency-64k"
}
],
"availability": "No subscription required"
}
{
"ecosystem": "Ubuntu:22.04:LTS",
"cves": [
{
"id": "CVE-2022-2585",
"severity": [
{
"type": "CVSS_V3",
"score": "CVSS:3.1/AV:L/AC:H/PR:L/UI:N/S:U/C:N/I:L/A:H"
},
{
"type": "CVSS_V3",
"score": "CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H"
},
{
"type": "Ubuntu",
"score": "high"
}
]
},
{
"id": "CVE-2022-2586",
"severity": [
{
"type": "CVSS_V3",
"score": "CVSS:3.1/AV:L/AC:H/PR:L/UI:N/S:U/C:N/I:L/A:H"
},
{
"type": "CVSS_V3",
"score": "CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H"
},
{
"type": "Ubuntu",
"score": "high"
}
]
},
{
"id": "CVE-2022-2588",
"severity": [
{
"type": "CVSS_V3",
"score": "CVSS:3.1/AV:L/AC:H/PR:L/UI:N/S:U/C:N/I:L/A:H"
},
{
"type": "CVSS_V3",
"score": "CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H"
},
{
"type": "Ubuntu",
"score": "high"
}
]
},
{
"id": "CVE-2022-29900",
"severity": [
{
"type": "CVSS_V3",
"score": "CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:C/C:H/I:N/A:N"
},
{
"type": "Ubuntu",
"score": "medium"
}
]
},
{
"id": "CVE-2022-29901",
"severity": [
{
"type": "CVSS_V3",
"score": "CVSS:3.1/AV:L/AC:H/PR:L/UI:N/S:C/C:H/I:N/A:N"
},
{
"type": "CVSS_V3",
"score": "CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:C/C:H/I:N/A:N"
},
{
"type": "Ubuntu",
"score": "medium"
}
]
}
]
}