[email protected]   |   +963 xx xx xx
Professional ICT & Telecommunication consultancy

Linux Kernel Improper Authentication Vulnerability

A vulnerability was found in the Linux kernel’s cgroup_release_agent_write in the kernel/cgroup/cgroup-v1.c function. This flaw, under certain circumstances, allows the use of the cgroups v1 release_agent feature to escalate privileges and bypass the namespace isolation unexpectedly.

MANARTECH SECURITY ALERT

Linux Kernel Improper Authentication Vulnerability

CVE Numbers

CVE-2022-0492

Affected Product

Kernel — Linux

Threat Description

A vulnerability was found in the Linux kernel’s cgroup_release_agent_write in the kernel/cgroup/cgroup-v1.c function. This flaw, under certain circumstances, allows the use of the cgroups v1 release_agent feature to escalate privileges and bypass the namespace isolation unexpectedly.

Severity Scale

CRITICALHIGHMEDIUMLOW

Severity

HIGH

Affected Versions

To be reviewed

Recommended Mitigation

Apply mitigations per vendor instructions, follow applicable BOD 22-01 guidance for cloud services, or discontinue use of the product if mitigations are unavailable.

Reference Links


http://packetstormsecurity.com/files/166444/Kernel-Live-Patch-Security-Notice-LSN-0085-1.html


http://packetstormsecurity.com/files/167386/Kernel-Live-Patch-Security-Notice-LSN-0086-1.html


http://packetstormsecurity.com/files/176099/Docker-cgroups-Container-Escape.html


https://bugzilla.redhat.com/show_bug.cgi?id=2051505


https://git.kernel.org/pub/scm/linux/kernel/git/torvalds/linux.git/commit/?id=24f6008564183aa120d07c03d9289519c2fe02af


https://lists.debian.org/debian-lts-announce/2022/03/msg00011.html


https://lists.debian.org/debian-lts-announce/2022/03/msg00012.html


https://security.netapp.com/advisory/ntap-20220419-0002/


https://www.debian.org/security/2022/dsa-5095


https://www.debian.org/security/2022/dsa-5096


http://packetstormsecurity.com/files/166444/Kernel-Live-Patch-Security-Notice-LSN-0085-1.html


http://packetstormsecurity.com/files/167386/Kernel-Live-Patch-Security-Notice-LSN-0086-1.html


http://packetstormsecurity.com/files/176099/Docker-cgroups-Container-Escape.html


https://bugzilla.redhat.com/show_bug.cgi?id=2051505


https://git.kernel.org/pub/scm/linux/kernel/git/torvalds/linux.git/commit/?id=24f6008564183aa120d07c03d9289519c2fe02af


https://lists.debian.org/debian-lts-announce/2022/03/msg00011.html


https://lists.debian.org/debian-lts-announce/2022/03/msg00012.html


https://security.netapp.com/advisory/ntap-20220419-0002/


https://www.debian.org/security/2022/dsa-5095


https://www.debian.org/security/2022/dsa-5096


https://www.cisa.gov/known-exploited-vulnerabilities-catalog?field_cve=CVE-2022-0492


https://nvd.nist.gov/vuln/detail/CVE-2022-0492