Alpaquita LinuxStreamSecurity Advisory
Search Cve

CVE-2022-2588

Published: January 8, 2024Last modified: May 27, 2025

Description

It was discovered that the cls_route filter implementation in the Linux kernel would not remove an old filter from the hashtable before freeing it if its handle had the value 0.

Severity score breakdown

ParameterValue
Base score7.8
Attack VectorLOCAL
Attack complexityLOW
Privileges requiredLOW
User interactionNONE
ScopeUNCHANGED
ConfidentialityHIGH
Integrity impactHIGH
Availability impactHIGH
VectorCVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H

Notes

Fixed in v6.0 (commit 9ad36309e271)

Status

ProductReleasePackageStatus
Alpaquita Linux23 LTSlinux-ltsNot affected (6.1.33-r0)
Streamlinux-ltsNot affected (6.1.33-r0)

References

ON THIS PAGE