Back

HIGH

kernel: watch queue race condition can lead to privilege escalation

Published Aug 25, 2022

Description

A race condition was found in the Linux kernel's watch queue due to a missing lock in pipe_resize_ring(). The specific flaw exists within the handling of pipe buffers. The issue results from the lack of proper locking when performing operations on an object. This flaw allows a local user to crash the system or escalate their privileges on the system.

Affected products

Remediation

Red Hat statement

Red Hat Enterprise Linux 6, 7 and 8 are not affected by this issue as they did not include support for general notification queue.

References (8)

Change history (0)

No recorded changes yet.

Sources
CVE.org / MITRE
Status PUBLISHED
Assigner redhat
Published Aug 25, 2022
Updated Aug 3, 2024
Reserved Aug 23, 2022
NVD
Status Modified
Modified Jun 17, 2026
Red Hat
Severity Important
Public date May 27, 2022
ENISA EUVD
Assigner redhat
Published Aug 25, 2022
Updated Aug 3, 2024
Exploited since n/a
EUVD-2022-35180