kernel: possible privileges escalation due to missing TLB flush
Published Mar 25, 2022
7.8
HIGHCVSS 3.1
EPSS 0.38%
Description
A random memory access flaw was found in the Linux kernel's GPU i915 kernel driver functionality in the way a user may run malicious code on the GPU. This flaw allows a local user to crash the system or escalate their privileges on the system.
Affected products
- Vendor n/a Product Kernel Defaultn/a
- Version kernel 5.17-rc2StatusaffectedConstraints-
- Version
Default status is the baseline for the product, each version can override it (e.g. patched versions marked unaffected).
| Vendor | Product | Default status | Versions | ||||||
|---|---|---|---|---|---|---|---|---|---|
| n/a | Kernel | n/a |
|
Configuration 1
- < 4.4.301
- ≥ 4.5 · < 4.9.299
- ≥ 4.10 · < 4.14.264
- ≥ 4.15 · < 4.19.227
- ≥ 4.20 · < 5.4.175
- ≥ 5.5 · < 5.10.95
- ≥ 5.11 · < 5.15.18
- ≥ 5.16 · < 5.16.4
- 5.17
- 5.17
Configuration 2
- 8.0
- 8.4
- 8.2
- 8.2
- 8.0
- 8.4
- 7.7
- 8.0
- 7.0
- 8.2
- 8.4
- 8.0
- 8.2
- 8.4
- 7.0
- 7.0
- 8.0
- 8.2
- 8.4
- 7
- 8
- 7
- 8
- 8.2
- 8.4
- 8.2
- 8.4
- 7.0
- 7.0
- 7.3
- 7.4
- 7.6
- 7.7
- 8.2
- 8.4
- 7.6
- 7.7
- 8.1
- 8.2
- 8.4
- 7.7
- 8.2
- 8.4
- 7.6
- 8.1
- 8.2
- 8.4
- 7.0
Configuration 3
- 4.0
- 4.0
Running on/with
- 8.0
Configuration 4
- 2.0
Running on/with
- 7.0
Configuration 5
- 1.0
Running on/with
- n/a
- n/a
- n/a
Configuration 6
- 34
- 35
Configuration 7
- 4.4.10
Configuration 8
- n/a
Configuration 9
- n/a
Configuration 10
- n/a
Configuration 11
- n/a
Configuration 12
- n/a
Configuration 13
- n/a
Configuration 14
- n/a
Configuration 15
- n/a
No data.
Red Hat Enterprise Linux 7
kernel-0:3.10.0-1160.59.1.el7
Fixed · RHSA-2022:0620
Red Hat Enterprise Linux 7
kernel-rt-0:3.10.0-1160.59.1.rt56.1200.el7
Fixed · RHSA-2022:0622
Red Hat Enterprise Linux 7
kpatch-patch
Fixed · RHSA-2022:0592
Red Hat Enterprise Linux 7.3 Advanced Update Support
kernel-0:3.10.0-514.99.1.el7
Fixed · RHSA-2022:1106
Red Hat Enterprise Linux 7.4 Advanced Update Support
kernel-0:3.10.0-693.99.1.el7
Fixed · RHSA-2022:1104
Red Hat Enterprise Linux 7.6 Advanced Update Support
kernel-0:3.10.0-957.92.1.el7
Fixed · RHSA-2022:1107
Red Hat Enterprise Linux 7.6 Telco Extended Update Support
kernel-0:3.10.0-957.92.1.el7
Fixed · RHSA-2022:1107
Red Hat Enterprise Linux 7.6 Update Services for SAP Solutions
kernel-0:3.10.0-957.92.1.el7
Fixed · RHSA-2022:1107
Red Hat Enterprise Linux 7.6 Update Services for SAP Solutions
kpatch-patch
Fixed · RHSA-2022:1103
Red Hat Enterprise Linux 7.7 Advanced Update Support
kernel-0:3.10.0-1062.63.1.el7
Fixed · RHSA-2022:0712
Red Hat Enterprise Linux 7.7 Telco Extended Update Support
kernel-0:3.10.0-1062.63.1.el7
Fixed · RHSA-2022:0712
Red Hat Enterprise Linux 7.7 Update Services for SAP Solutions
kernel-0:3.10.0-1062.63.1.el7
Fixed · RHSA-2022:0712
Red Hat Enterprise Linux 7.7 Update Services for SAP Solutions
kpatch-patch
Fixed · RHSA-2022:0718
Red Hat Enterprise Linux 8
kernel-0:4.18.0-348.20.1.el8_5
Fixed · RHSA-2022:0825
Red Hat Enterprise Linux 8
kernel-rt-0:4.18.0-348.20.1.rt7.150.el8_5
Fixed · RHSA-2022:0819
Red Hat Enterprise Linux 8
kpatch-patch
Fixed · RHSA-2022:0849
Red Hat Enterprise Linux 8.1 Update Services for SAP Solutions
kernel-0:4.18.0-147.64.1.el8_1
Fixed · RHSA-2022:0823
Red Hat Enterprise Linux 8.1 Update Services for SAP Solutions
kpatch-patch
Fixed · RHSA-2022:0851
Red Hat Enterprise Linux 8.1 Update Services for SAP Solutions
kpatch-patch
Fixed · RHSA-2022:0958
Red Hat Enterprise Linux 8.2 Extended Update Support
kernel-0:4.18.0-193.79.1.el8_2
Fixed · RHSA-2022:0820
Red Hat Enterprise Linux 8.2 Extended Update Support
kernel-rt-0:4.18.0-193.79.1.rt13.129.el8_2
Fixed · RHSA-2022:0821
Red Hat Enterprise Linux 8.2 Extended Update Support
kpatch-patch
Fixed · RHSA-2022:0925
Red Hat Enterprise Linux 8.4 Extended Update Support
kernel-0:4.18.0-305.40.1.el8_4
Fixed · RHSA-2022:0777
Red Hat Enterprise Linux 8.4 Extended Update Support
kernel-rt-0:4.18.0-305.40.1.rt7.112.el8_4
Fixed · RHSA-2022:0771
Red Hat Enterprise Linux 8.4 Extended Update Support
kpatch-patch
Fixed · RHSA-2022:0772
Red Hat Virtualization 4 for Red Hat Enterprise Linux 7
redhat-virtualization-host-0:4.3.22-20220330.1.el7_9
Fixed · RHSA-2022:1263
Red Hat Virtualization 4 for Red Hat Enterprise Linux 8
redhat-virtualization-host-0:4.4.10-202203101736_8.5
Fixed · RHSA-2022:0841
Red Hat Enterprise Linux 6
kernel
Not affected
Red Hat Enterprise Linux 9
kernel
Not affected
Red Hat Enterprise Linux 9
kernel-rt
Not affected
| Product | Package | State | Advisory |
|---|---|---|---|
| Red Hat Enterprise Linux 7 | kernel-0:3.10.0-1160.59.1.el7 | Fixed | RHSA-2022:0620 |
| Red Hat Enterprise Linux 7 | kernel-rt-0:3.10.0-1160.59.1.rt56.1200.el7 | Fixed | RHSA-2022:0622 |
| Red Hat Enterprise Linux 7 | kpatch-patch | Fixed | RHSA-2022:0592 |
| Red Hat Enterprise Linux 7.3 Advanced Update Support | kernel-0:3.10.0-514.99.1.el7 | Fixed | RHSA-2022:1106 |
| Red Hat Enterprise Linux 7.4 Advanced Update Support | kernel-0:3.10.0-693.99.1.el7 | Fixed | RHSA-2022:1104 |
| Red Hat Enterprise Linux 7.6 Advanced Update Support | kernel-0:3.10.0-957.92.1.el7 | Fixed | RHSA-2022:1107 |
| Red Hat Enterprise Linux 7.6 Telco Extended Update Support | kernel-0:3.10.0-957.92.1.el7 | Fixed | RHSA-2022:1107 |
| Red Hat Enterprise Linux 7.6 Update Services for SAP Solutions | kernel-0:3.10.0-957.92.1.el7 | Fixed | RHSA-2022:1107 |
| Red Hat Enterprise Linux 7.6 Update Services for SAP Solutions | kpatch-patch | Fixed | RHSA-2022:1103 |
| Red Hat Enterprise Linux 7.7 Advanced Update Support | kernel-0:3.10.0-1062.63.1.el7 | Fixed | RHSA-2022:0712 |
| Red Hat Enterprise Linux 7.7 Telco Extended Update Support | kernel-0:3.10.0-1062.63.1.el7 | Fixed | RHSA-2022:0712 |
| Red Hat Enterprise Linux 7.7 Update Services for SAP Solutions | kernel-0:3.10.0-1062.63.1.el7 | Fixed | RHSA-2022:0712 |
| Red Hat Enterprise Linux 7.7 Update Services for SAP Solutions | kpatch-patch | Fixed | RHSA-2022:0718 |
| Red Hat Enterprise Linux 8 | kernel-0:4.18.0-348.20.1.el8_5 | Fixed | RHSA-2022:0825 |
| Red Hat Enterprise Linux 8 | kernel-rt-0:4.18.0-348.20.1.rt7.150.el8_5 | Fixed | RHSA-2022:0819 |
| Red Hat Enterprise Linux 8 | kpatch-patch | Fixed | RHSA-2022:0849 |
| Red Hat Enterprise Linux 8.1 Update Services for SAP Solutions | kernel-0:4.18.0-147.64.1.el8_1 | Fixed | RHSA-2022:0823 |
| Red Hat Enterprise Linux 8.1 Update Services for SAP Solutions | kpatch-patch | Fixed | RHSA-2022:0851 |
| Red Hat Enterprise Linux 8.1 Update Services for SAP Solutions | kpatch-patch | Fixed | RHSA-2022:0958 |
| Red Hat Enterprise Linux 8.2 Extended Update Support | kernel-0:4.18.0-193.79.1.el8_2 | Fixed | RHSA-2022:0820 |
| Red Hat Enterprise Linux 8.2 Extended Update Support | kernel-rt-0:4.18.0-193.79.1.rt13.129.el8_2 | Fixed | RHSA-2022:0821 |
| Red Hat Enterprise Linux 8.2 Extended Update Support | kpatch-patch | Fixed | RHSA-2022:0925 |
| Red Hat Enterprise Linux 8.4 Extended Update Support | kernel-0:4.18.0-305.40.1.el8_4 | Fixed | RHSA-2022:0777 |
| Red Hat Enterprise Linux 8.4 Extended Update Support | kernel-rt-0:4.18.0-305.40.1.rt7.112.el8_4 | Fixed | RHSA-2022:0771 |
| Red Hat Enterprise Linux 8.4 Extended Update Support | kpatch-patch | Fixed | RHSA-2022:0772 |
| Red Hat Virtualization 4 for Red Hat Enterprise Linux 7 | redhat-virtualization-host-0:4.3.22-20220330.1.el7_9 | Fixed | RHSA-2022:1263 |
| Red Hat Virtualization 4 for Red Hat Enterprise Linux 8 | redhat-virtualization-host-0:4.4.10-202203101736_8.5 | Fixed | RHSA-2022:0841 |
| Red Hat Enterprise Linux 6 | kernel | Not affected | n/a |
| Red Hat Enterprise Linux 9 | kernel | Not affected | n/a |
| Red Hat Enterprise Linux 9 | kernel-rt | Not affected | n/a |
No package ranges for this CVE.
Remediation
Red Hat statement
For the Red Hat Enterprise Linux default configuration, the issue occurs only if a local user is running malicious code on GPU. The GPU is used and the user is required to have privileges to access the i915 Intel GPU.
Red Hat mitigation
Mitigation for this issue is either not available or the currently available options don't meet the Red Hat Product Security criteria comprising ease of use and deployment, applicability to widespread installation base, or stability.
Metrics
No CVSS v4.0 score for this CVE.
CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H
1 other source (Red Hat) ▾
CVSS:3.1/AV:L/AC:H/PR:L/UI:N/S:U/C:H/I:H/A:H
No CVSS v3.0 score for this CVE.
AV:L/AC:L/Au:N/C:P/I:P/A:P
This CVE is not in the KEV list.
No CISA SSVC assessment for this CVE yet.
Estimated probability of exploitation in the wild in the next 30 days (FIRST EPSS). As of Oct 1, 2026.
Score over time
2022–2026- EPSS v2
- EPSS v3
- EPSS v4
- EPSS v5
Percentile over time
- EPSS v2
- EPSS v3
- EPSS v4
- EPSS v5
Table of values (11 key points)
Flat stretches are collapsed; showing up to 120 newest points.
| Date | Score | Percentile | Model |
|---|---|---|---|
| Oct 1, 2026 | 0.38% (0.00382) | 29.84th | v5 (v2026.06.15) |
| Jun 15, 2026 | 0.38% (0.00379) | 29.52th | v5 (v2026.06.15) |
| Mar 17, 2025 | 0.04% (0.00044) | 10.69th | v4 (v2025.03.14) |
| Dec 12, 2024 | 0.04% (0.00042) | 5.07th | v3 (v2023.03.01) |
| Mar 7, 2023 | 0.04% (0.00042) | 5.63th | v3 (v2023.03.01) |
| Mar 6, 2023 | 0.95% (0.00950) | 32.28th | v2 (v2022.01.01) |
| Dec 1, 2022 | 0.95% (0.00950) | 31.34th | v2 (v2022.01.01) |
| Nov 10, 2022 | 0.89% (0.00890) | 29.29th | v2 (v2022.01.01) |
| May 26, 2022 | 0.89% (0.00890) | 27.28th | v2 (v2022.01.01) |
| Apr 1, 2022 | 0.89% (0.00885) | 24.24th | v2 (v2022.01.01) |
| Mar 26, 2022 | 0.89% (0.00885) | 11.52th | v2 (v2022.01.01) |
References (7)
- http://www.openwall.com/lists/oss-security/2022/11/30/1 mailing-listMailing ListThird Party Advisory
- https://access.redhat.com/security/cve/CVE-2022-0330 Vendor Advisory
- https://bugzilla.redhat.com/show_bug.cgi?id=2042404 Issue TrackingThird Party Advisory
- https://nvd.nist.gov/vuln/detail/CVE-2022-0330
- https://security.netapp.com/advisory/ntap-20220526-0001/ Third Party Advisory
- https://www.cve.org/CVERecord?id=CVE-2022-0330
- https://www.openwall.com/lists/oss-security/2022/01/25/12 Mailing ListThird Party Advisory
| Link | Providers | Tags |
|---|---|---|
| http://www.openwall.com/lists/oss-security/2022/11/30/1 | mailing-listMailing ListThird Party Advisory | |
| https://access.redhat.com/security/cve/CVE-2022-0330 | Vendor Advisory | |
| https://bugzilla.redhat.com/show_bug.cgi?id=2042404 | Issue TrackingThird Party Advisory | |
| https://nvd.nist.gov/vuln/detail/CVE-2022-0330 | ||
| https://security.netapp.com/advisory/ntap-20220526-0001/ | Third Party Advisory | |
| https://www.cve.org/CVERecord?id=CVE-2022-0330 | ||
| https://www.openwall.com/lists/oss-security/2022/01/25/12 | Mailing ListThird Party Advisory |
Change history (0)
No recorded changes yet.